AliyunCCCSIPluginRolePolicy 是专用于服务角色的授权策略,通常会在创建对应的服务角色时同步完成授权,以允许服务角色代您访问其他云服务。本策略由对应的阿里云服务按需更新,请勿将本策略授权给服务角色之外的 RAM 身份使用。
策略详情
类型:系统策略
创建时间:2025-07-07 16:40:30
更新时间:2025-07-07 16:40:30
当前版本:v1
策略内容
{
"Version": "1",
"Statement": [
{
"Action": [
"ebs:CreateContainerDisk",
"ebs:DescribeContainerDisks",
"ebs:GetContainerDisk",
"ebs:DeleteContainerDisk",
"ebs:CreateDisk",
"ebs:DeleteDisk",
"ebs:GetDisk",
"ebs:AttachDisk",
"ebs:DetachDisk",
"ebs:AuthorizeDiskAccess",
"ebs:RevokeDiskAccess"
],
"Resource": "*",
"Effect": "Allow"
},
{
"Action": [
"ecs:AttachDisk",
"ecs:DetachDisk",
"ecs:DescribeDisks",
"ecs:CreateDisk",
"ecs:AddTags",
"ecs:RemoveTags",
"ecs:DescribeTags",
"ecs:DeleteDisk",
"ecs:DescribeInstances",
"ecs:ResizeDisk",
"ecs:CreateSnapshot",
"ecs:DeleteSnapshot",
"ecs:DescribeSnapshots",
"ecs:DescribeSnapshotGroups",
"ecs:CreateSnapshotGroup",
"ecs:DeleteSnapshotGroup",
"ecs:CopySnapshot"
],
"Resource": "*",
"Effect": "Allow"
},
{
"Action": [
"nas:CreateFileSystem",
"nas:CreateMountTarget",
"nas:DeleteFileSystem",
"nas:DeleteMountTarget",
"nas:DescribeFileSystems",
"nas:DescribeMountTargets",
"nas:ModifyFileSystem",
"nas:ModifyMountTarget",
"nas:AddTags",
"nas:DescribeTags",
"nas:RemoveTags",
"nas:EnableRecycleBin",
"nas:GetRecycleBinAttribute",
"nas:SetDirQuota",
"nas:DescribeDirQuotas"
],
"Resource": "*",
"Effect": "Allow"
}
]
}
相关文档
该文章对您有帮助吗?