Cloud Services

ModernOps configuration

IAM user management
Published On Sep 04, 2024 - 11:25 AM

IAM user management

IAM resources page allows you to manage and regulate user access, so you can control the type of roles and permissions that IAM resources have in your platform.
IAM allows you to quickly control the access of your resources limiting the interaction with the platform based on the required level of access. With the Platform Administrator role, you can not only have all permissions but also customize roles and assign specific permissions as needed. This is an out-of-the-box role granted once the account is first created and has the following permissions:
Permission
Description
iam.users.view
Allow to view users
iam.users.create
Allow to create users
iam.users.update
Allow to update users
iam.users.delete
Allow to delete users
iam.users.bulkdelete
Allow to delete multiple users
The IAM Users page allows you to manage users and their roles controlling your access management needs quickly and efficiently. To access this page, go to the IAM page; from the left navigation bar, select the
Users
option.

Managing users permissions

  1. From the IAM users page, click the
    overflow menu
    next to the user that you want to manage.
  2. Select
    Manage role
    .
  3. Update the roles assigned to the user from the list of options.
  4. Click
    Confirm
    .

Deleting users

  1. From the IAM users page, click the
    overflow menu
    next to the user that you want to delete.
  2. Select
    Delete
    .
  3. Confirm the deletion.

Assigning Access Policy directly to a user

Access Policy governs Access Group permissions to perform actions within the platform. Assigning an Access Policy to an Access Group allows group members to inherit the same permissions. However, You can assign an access policy to a user, without any association to any access group depending on your access level.
An Access Policy includes a
Subject
(User IDs, Services IDs, Access Groups), a
Target
(associates resources), and a
Permission
(associates roles).
  1. Select the users tab from the left navigation bar.
    The Member Details
    page opens
  2. Click
    Add New
    at the top of the page, and select
    Assign Access Policy
    .
  3. Complete the following information:
    1. Select Service:
      Select the service available from the dropdown menu.
    2. Select Scope:
      Based on the service that you selected, click the radio button that applies to your selection:
      1. All resources
        : The Access Policy is assigned to all resources within the Access Group.
      2. Resources based on selected attributes
        : You can add acccess tags or attributes for a more specific access selection. You can add all the existent attributes by clicking the
        Add attribute +
        link. Based on the attribute selected, select the
        attribute name
          and
        attribute value
        from the dropdown list.  The attribute operator is set equal by default. 
    3. Select Role:
      Select the Platform role or roles that you want to assign to this Access Policy. You may also select one of the Custom Roles that you have created. For additional information on the permissions associated to that specific role, click the tag numbers.
  4. Click
    Assign
    at the bottom of the Summary pane to finish. The
    Member Details
    page for that specific
    User
    is automatically updated displaying the new access policy.

Updating an Access Policy directly from a user

  1. Select the member that you want to update the Access Policy to.
    The Member Details
    page opens.
  2. Click the
    overflow menu
    next to the Access Policy that you want to update.
  3. Select
    View details
    . The Access Policy Details page opens.
  4. Click
    Edit
    .
  5. Make the necessary updates and click
    Update
    .

Removing an Access Policy directly from a user

  1. Select the member that you want to remove the Access Policy to.
    The Member Details
    page opens.
  2. Click the
    overflow menu
    next to the Access Policy that you want to remove.
  3. Select
    Remove
    .
Do you have two minutes for a quick survey?
Take Survey