CreatePermissionApplyOrder
Creates a permission request order. Note: The 2020 version of OpenAPI will be discontinued. Migrate to the 2024 version of OpenAPI — ApplyResourceAccessPermission as soon as possible.
Operation description
Note: The 2020 version of OpenAPI will be discontinued. Migrate to the 2024 version of OpenAPI — ApplyResourceAccessPermission as soon as possible.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
dataworks:* |
create |
*All Resource
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| ApplyUserIds |
string |
Yes |
The UIDs of the Alibaba Cloud accounts for which permissions are requested. Separate multiple account UIDs with commas (,). |
26784260040899****,26784260040899**** |
| Deadline |
integer |
No |
The expiration time of the requested permissions. Specify a UNIX timestamp. If you do not specify this parameter, the default expiration time is January 1, 2065. If LabelSecurity is not enabled for the MaxCompute project, or the security level of the requested table column is 0 or less than or equal to the security level of the requesting account, you can only request permanent permissions. Go to the management page of the DataWorks workspace and check whether column-level access control is enabled on the advanced configuration page of the MaxCompute engine. Go to the DataWorks workspace to view the security level of columns in Data Map and the security level of accounts on the member management page. |
1617115071885 |
| ApplyReason |
string |
Yes |
The reason for the request. This is used by the administrator for evaluation and approval. |
I need to use this table |
| MaxComputeProjectName |
string |
No |
The name of the MaxCompute project for which permissions are requested. |
aMaxcomputeProjectName |
WorkspaceId
deprecated
|
integer |
No |
The ID of the DataWorks workspace to which the MaxCompute project belongs. Go to the DataWorks workspace configuration page to obtain the workspace ID. |
12345 |
OrderType
deprecated
|
integer |
No |
This parameter is deprecated. Leave it empty. |
1 |
EngineType
deprecated
|
string |
No |
This parameter is deprecated. Leave it empty. |
odps |
| ApplyObject |
array<object> |
Yes |
The list of objects to request permissions for. |
|
|
array<object> |
No |
The response object. |
||
| Actions |
string |
No |
The permission types to request. Separate multiple permission types with commas (,). Only Select, Describe, Drop, Alter, Update, and Download types are supported. |
Select,Describe |
| ColumnMetaList |
array<object> |
No |
The list of column objects. |
|
|
object |
No |
The response object. |
||
| Name |
string |
No |
The name of the column for which permissions are requested. If you request permissions on the entire table, enter all column names of the table. You can request permissions on specific columns only if LabelSecurity is enabled for the MaxCompute project. If LabelSecurity is not enabled, you can only request permissions on the entire table. |
aColumnName |
| Actions |
string |
No |
The permission types to request. Separate multiple permission types with commas (,). Only Select, Describe, and Download types are supported. |
Select |
| Name |
string |
No |
The object for which permissions are requested. Only MaxCompute tables are supported. Enter the name of the target table. |
aTableName |
| ApplyType |
string |
No |
The type of the request order. Valid values:
Valid values:
|
MaxComputeTable |
| CatalogName |
string |
No |
The name of the data catalog. Go to the Data Lake Formation console to view the data catalog name. |
hive |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
The response object. |
||
| RequestId |
string |
The request ID. |
0bc1ec92159376**** |
| FlowId |
array |
The list of flow IDs. |
|
|
string |
The ID of the generated request order. If you request permissions on multiple objects and the approvers are different, multiple request orders are generated based on different approvers. In this case, an array is returned. |
ee276e6e-5d34-46d8-b848-bca7879ed233 |
Examples
Success response
JSON format
{
"RequestId": "0bc1ec92159376****",
"FlowId": [
"ee276e6e-5d34-46d8-b848-bca7879ed233"
]
}
Error codes
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.