账号管理方案:由A在云安全中心统一管理A、B、C、D、E的云产品接入、云配置检测及其处置事项。
{ "Statement": [ { "Action": [ "AdvDefence:Desc*", "AdvDefence:Get*", "AdvDefence:Query*", "alb:Describe*", "apig:Get*", "apig:List*", "clb:Describe*", "cr:Get*", "cr:List*", "ecs:Describe*", "filenas:Describe*", "filenas:DescribeFileSystems", "filenas:DescribePermissionGroups", "filenas:DescribePermissionRules", "hbase:Describe*", "hbase:Get*", "hbase:List*", "iam:AttachUserPolicy", "iam:CreatePolicy", "iam:DeletePolicy", "iam:DetachUserPolicy", "iam:Get*", "iam:List*", "kafka:Describe*", "kms:Describe*", "mongodb:Describe*", "mongodb:Get*", "mongodb:List*", "mse:Get*", "mse:List*", "natgateway:Describe*", "natgateway:List*", "nta:Get*", "nta:ListCloudInstances", "nta:ntavolcaccountcheck", "origin_defence:Desc*", "origin_defence:List*", "origin_defence:Query*", "rds_mssql:Describe*", "rds_mssql:Get*", "rds_mssql:List*", "rds_mysql:Describe*", "rds_mysql:Get*", "rds_mysql:List*", "rds_postgresql:Describe*", "rds_postgresql:Get*", "rds_postgresql:List*", "redis:Describe*", "redis:Get*", "redis:List*", "rocketmq:Describe*", "seccenter:Get*", "seccenter:List*", "tos:Get*", "tos:Head*", "tos:List*", "vedbm:Describe*", "vedbm:Get*", "vedbm:List*", "vke:Get*", "vke:List*", "vmp:Get*", "vmp:List*", "vmp:Query*", "vpc:Describe*", "vpc:List*", "waf:Get*", "waf:List*" ], "Effect": "Allow", "Resource": [ "*" ] } ], "Version": 1.1 }
添加完成后,云安全中心可以同步该子账号所属主账号下的云资产。