文档

为无影云电脑个人版授权

更新时间:
一键部署

您首次使用无影云电脑个人版(原标准版)时,系统将自动创建服务关联角色AliyunServiceRoleForGwsWyse,并为其授予相应权限策略。获得您的授权后,个人版才能借助该服务关联角色对云电脑资源执行操作。

什么是服务关联角色AliyunServiceRoleForGwsWyse

服务关联角色是与特定的云服务关联的角色,通过服务关联角色可以更好地配置云服务正常操作所必需的权限,避免误操作带来的风险。如需进一步了解,请参见服务关联角色

在您使用个人版的过程中,个人版服务需要通过服务关联角色AliyunServiceRoleForGwsWyse获取云电脑资源的访问权限。

说明

云电脑资源是指底层技术资源,与云电脑内的数据无关。

角色详情

服务关联角色名称:AliyunServiceRoleForGwsWyse

权限策略:AliyunServiceRolePolicyForGwsWyse

该权限策略包含的云服务访问权限如下:

{
  "Version": "1",
  "Statement": [
    {
      "Effect": "Allow",
      "Action": [
        "ecd:CreateDesktopGroup",
        "ecd:ModifyDesktopGroup",
        "ecd:DeleteDesktopGroup",
        "ecd:DescribeDesktopGroups",
        "ecd:GetDesktopGroupDetail",
        "ecd:DescribeDesktopsInGroup",
        "ecd:DescribeUserConnectionRecords",
        "ecd:AddUserToDesktopGroup",
        "ecd:RemoveUserFromDesktopGroup",
        "ecd:ModifyUserToDesktopGroup",
        "ecd:DescribeUsersInGroup",
        "ecd:SetDesktopGroupTimer",
        "ecd:SetDesktopGroupTimerStatus",
        "ecd:CreateDesktops",
        "ecd:StartDesktops",
        "ecd:StopDesktops",
        "ecd:RebootDesktops",
        "ecd:DeleteDesktops",
        "ecd:RebuildDesktops",
        "ecd:ResetDesktops",
        "ecd:DescribeDesktops",
        "ecd:ModifyDesktopName",
        "ecd:ModifyEntitlement",
        "ecd:GetAuthCode",
        "ecd:CreateApp",
        "ecd:DeleteApp",
        "ecd:DeleteTenantApp",
        "ecd:CreateAppImage",
        "ecd:ListAppImage",
        "ecd:ListSystemImage",
        "ecd:StartAdaptorTask",
        "ecd:GetAppAdaptor",
        "ecd:GetVhdStsCredential",
        "ecd:ManualUploadVhdDone",
        "ecd:ListAllAppCategory",
        "ecd:CreateTenantApp",
        "ecd:DeleteTenantApp",
        "ecd:ListTenantApp",
        "ecd:CreateAppVersion",
        "ecd:DeleteAppVersion",
        "ecd:ListAppVersion",
        "ecd:ListVersionAppInfo",
        "ecd:UpdateTenantApp",
        "ecd:UpdateAppParam",
        "ecd:CreateImage",
        "ecd:DeleteImages",
        "ecd:CreateBundle",
        "ecd:ModifyBundle",
        "ecd:DeleteBundles",
        "ecd:DescribeBundles",
        "ecd:DescribeImages",
        "ecd:CreatePolicyGroup",
        "ecd:ModifyPolicyGroup",
        "ecd:ClonePolicyGroup",
        "ecd:ModifyDesktopsPolicyGroup",
        "ecd:DescribePolicyGroups",
        "ecd:DescribeDesktopByPolicyGroupId",
        "ecd:DescribeDesktopGroupByPolicyGroupId",
        "ecd:DeletePolicyGroups",
        "ecd:DeleteOfficeSites",
        "ecd:DescribeOfficeSites",
        "ecd:CreateSimpleOfficeSite",
        "ecd:ModifyOfficeSiteCrossDesktopAccess",
        "ecd:SetOfficeSiteSsoStatus",
        "ecd:CreateCloudDriveService",
        "ecd:ModifyCloudDriveService",
        "ecd:DeleteCloudDriveServices",
        "ecd:DescribeCloudDriveService",
        "ecd:CreateCloudDriveUsers",
        "ecd:ModifyCloudDriveUsers",
        "ecd:DeleteCloudDriveUsers",
        "ecd:DescribeCloudDriveUsers",
        "ecd:NotifyUserEvent",
        "ecd:CreateNetworkPackage",
        "ecd:DeleteNetworkPackages",
        "ecd:AssociateNetworkPackage",
        "ecd:DissociateNetworkPackage",
        "ecd:DescribeNetworkPackages",
        "ecd:ModifyNetworkPackageBandwidth",
        "ecd:ModifyNetworkPackageAttributes",
        "ecd:ApplyCoordinationForMonitoring",
        "ecd:CancelCoordinationForMonitoring",
        "ecd:SetOfficeSiteSsoStatus",
        "ecd:CreateEduRoom",
        "ecd:DescribeEduRooms",
        "ecd:ListEduRoomSps",
        "ecd:GetEduRoomSpDetail",
        "ecd:ModifyAclEntries",
        "ecd:DescribeAclEntries",
        "ecd:ApproveFotaUpdate",
        "ecd:DeleteEduRoom"
      ],
      "Resource": "*"
    },
    {
      "Action": "ram:DeleteServiceLinkedRole",
      "Resource": "*",
      "Effect": "Allow",
      "Condition": {
        "StringEquals": {
          "ram:ServiceName": "wyse.gws.aliyuncs.com"
        }
      }
    },
    {
      "Action": "ram:CreateServiceLinkedRole",
      "Resource": "*",
      "Effect": "Allow",
      "Condition": {
        "StringEquals": {
          "ram:ServiceName": "gws.aliyuncs.com"
        }
      }
    }
  ]
}

我需要做什么

您首次使用个人版时,系统将自动创建服务关联角色AliyunServiceRoleForGwsWyse,并为其授予相应权限策略。您只需要在提示对话框中单击确认授权,以确认您同意个人版借助该服务关联角色对云电脑资源执行操作。