All Products
Search
Document Center

Resource Orchestration Service:ALIYUN::ResourceManager::DelegatedAdministrator

更新時間:Jul 06, 2026

The ALIYUN::ResourceManager::DelegatedAdministrator resource type is used to designate a delegated administrator account.

Syntax

{
  "Type": "ALIYUN::ResourceManager::DelegatedAdministrator",
  "Properties": {
    "AccountId": String,
    "ServicePrincipal": String
  }
}

Properties

Parameter

Type

Required

Update allowed

Description

Constraints

AccountId

String

Yes

No

The Alibaba Cloud account ID of the member in the resource directory.

None

ServicePrincipal

String

Yes

No

The identifier of the trusted service.

None

Return values

Fn::GetAtt

  • DelegationEnabledTime: The timestamp when the account was designated as a delegated administrator.

  • AccountId: The Alibaba Cloud account ID of the member in the resource directory.

  • ServicePrincipal: The identifier of the trusted service.

Examples

ROSTemplateFormatVersion: '2015-09-01'
Parameters:
  ServicePrincipal:
    Type: String
    Description:
      en: The identifier of the trusted service.
    Required: true
  AccountId:
    Type: String
    Description:
      en: The Alibaba Cloud account ID of the member in the resource directory.
    Required: true
Resources:
  ExtensionResource:
    Type: ALIYUN::ResourceManager::DelegatedAdministrator
    Properties:
      ServicePrincipal:
        Ref: ServicePrincipal
      AccountId:
        Ref: AccountId
Outputs:
  DelegationEnabledTime:
    Value:
      Fn::GetAtt:
        - ExtensionResource
        - DelegationEnabledTime
    Description: The timestamp when the account was designated as a delegated administrator.
  ServicePrincipal:
    Value:
      Fn::GetAtt:
        - ExtensionResource
        - ServicePrincipal
    Description: The identifier of the trusted service.
  AccountId:
    Value:
      Fn::GetAtt:
        - ExtensionResource
        - AccountId
    Description: The Alibaba Cloud account ID of the member in the resource directory.
{
  "ROSTemplateFormatVersion": "2015-09-01",
  "Parameters": {
    "ServicePrincipal": {
      "Type": "String",
      "Description": {
        "en": "The identifier of the trusted service."
      },
      "Required": true
    },
    "AccountId": {
      "Type": "String",
      "Description": {
        "en": "The Alibaba Cloud account ID of the member in the resource directory."
      },
      "Required": true
    }
  },
  "Resources": {
    "ExtensionResource": {
      "Type": "ALIYUN::ResourceManager::DelegatedAdministrator",
      "Properties": {
        "ServicePrincipal": {
          "Ref": "ServicePrincipal"
        },
        "AccountId": {
          "Ref": "AccountId"
        }
      }
    }
  },
  "Outputs": {
    "DelegationEnabledTime": {
      "Value": {
        "Fn::GetAtt": [
          "ExtensionResource",
          "DelegationEnabledTime"
        ]
      },
      "Description": "The timestamp when the account was designated as a delegated administrator."
    },
    "ServicePrincipal": {
      "Value": {
        "Fn::GetAtt": [
          "ExtensionResource",
          "ServicePrincipal"
        ]
      },
      "Description": "The identifier of the trusted service."
    },
    "AccountId": {
      "Value": {
        "Fn::GetAtt": [
          "ExtensionResource",
          "AccountId"
        ]
      },
      "Description": "The Alibaba Cloud account ID of the member in the resource directory."
    }
  }
}