Zero ETL服务关联角色

本文介绍Zero ETL服务关联角色AliyunServiceRoleForClickHouseZeroETL以及如何删除此角色。

背景信息

Zero ETL服务关联角色AliyunServiceRoleForClickHouseZeroETL是一种访问控制(RAM)提供的服务关联角色。通过AliyunServiceRoleForClickHouseZeroETL,云数据库ClickHouse可以获得Zero ETL功能需要访问的源端和目标端数据实例的访问权限。

AliyunServiceRoleForClickHouseZeroETL权限说明

角色名称:AliyunServiceRoleForClickHouseZeroETL

角色权限策略:AliyunServiceRolePolicyForClickHouseZeroETL

权限说明:

{
    "Version": "1",
    "Statement": [
        {
            "Action": [
                "rds:DescribeDBInstances",
                "rds:DescribeDBInstanceAttribute",
                "rds:DescribeDBInstanceNetInfo",
                "rds:DescribeDBInstanceHAConfig",
                "rds:DescribeDBInstanceIPArrayList",
                "rds:DescribeSecurityGroupConfiguration",
                "rds:ModifySecurityGroupConfiguration",
                "rds:DescribeCharacterSetName",
                "rds:ModifySecurityIps",
                "clickhouse:DescribeDBInstanceAttribute",
                "clickhouse:DescribeDBInstances",
                "clickhouse:ModifySecurityIPList",
                "clickhouse:DescribeSecurityIPList",
                "clickhouse:DescribeEndpoints",
                "clickhouse:DescribeDBClusterAccessWhiteList",
                "clickhouse:DescribeDBClusterAttribute",
                "clickhouse:DescribeDBClusterNetInfoItems",
                "clickhouse:DescribeDBClusters",
                "clickhouse:ModifyDBClusterAccessWhiteList"
            ],
            "Effect": "Allow",
            "Resource": "*"
        },
        {
            "Action": "ram:DeleteServiceLinkedRole",
            "Resource": "*",
            "Effect": "Allow",
            "Condition": {
                "StringEquals": {
                    "ram:ServiceName": "zetl.clickhouse.aliyuncs.com"
                }
            }
        }
    ]
}

删除服务关联角色

如果需要删除AliyunServiceRoleForClickHouseZeroETL(ZeroETL服务关联角色),需要先释放依赖该服务关联角色的云数据库ClickHouse的集群。