AliyunServiceRolePolicyForAlikafkaConnector 是专用于服务关联角色的授权策略,会在创建服务关联角色 AliyunServiceRoleForAlikafkaConnector 时自动授权,以允许服务关联角色代您访问其他云服务。本策略由对应的阿里云服务按需更新,请勿将本策略授权给服务关联角色之外的 RAM 身份使用。
策略详情
类型:系统策略
创建时间:2025-10-23 13:42:46
更新时间:2025-10-23 13:42:46
当前版本:v1
策略内容
{
"Version": "1",
"Statement": [
{
"Effect": "Allow",
"Action": [
"fc:InvokeFunction",
"fc:GetFunction",
"fc:ListServices",
"fc:ListFunctions",
"fc:ListServiceVersions",
"fc:ListAliases",
"fc:CreateService",
"fc:DeleteService",
"fc:CreateFunction",
"fc:DeleteFunction",
"fc:CreateLayerVersion",
"fc:ListLayers"
],
"Resource": "*"
},
{
"Action": [
"rds:DescribeDatabases"
],
"Resource": "*",
"Effect": "Allow"
},
{
"Action": [
"oss:ListBuckets",
"oss:GetBucketAcl"
],
"Resource": "*",
"Effect": "Allow"
},
{
"Action": [
"elasticsearch:DescribeInstance",
"elasticsearch:ListInstance"
],
"Resource": "*",
"Effect": "Allow"
},
{
"Action": [
"dataworks:CreateRealTimeProcess",
"dataworks:QueryRealTimeProcessStatus",
"dataworks:GetDISyncTask",
"dataworks:UpdateDISyncTask",
"dataworks:DeployDISyncTask",
"dataworks:GetDISyncInstanceInfo",
"dataworks:StartDISyncInstance",
"dataworks:StopDISyncInstance",
"dataworks:TerminateDISyncInstance",
"dataworks:DeleteDISyncTask"
],
"Resource": "*",
"Effect": "Allow"
},
{
"Action": [
"eventbridge:CreateEventStreaming",
"eventbridge:UpdateEventStreaming",
"eventbridge:GetEventStreaming",
"eventbridge:DeleteEventStreaming",
"eventbridge:ListEventStreamings",
"eventbridge:StartEventStreaming",
"eventbridge:PauseEventStreaming",
"eventbridge:ListEventStreamingMetrics"
],
"Resource": "*",
"Effect": "Allow"
},
{
"Action": [
"ots:GetInstance",
"ots:ListInstance",
"ots:ListTable",
"ots:CreateTable",
"ots:UpdateTable",
"ots:DescribeTable",
"ots:GetRow",
"ots:PutRow",
"ots:UpdateRow",
"ots:DeleteRow",
"ots:GetRange",
"ots:BatchGetRow",
"ots:BatchWriteRow",
"ots:BulkImport",
"ots:Search",
"ots:OpenOtsService",
"ots:GetOtsServiceStatus",
"ots:InsertInstance",
"ots:DeleteTable",
"ots:CreateSearchIndex",
"ots:DeleteSearchIndex",
"ots:UpdateSearchIndex",
"ots:DescribeSearchIndex",
"ots:CreateTimeseriesTable",
"ots:ListTimeseriesTable",
"ots:DescribeTimeseriesTable",
"ots:PutTimeseriesData"
],
"Effect": "Allow",
"Resource": "*"
},
{
"Action": [
"gpdb:DescribeDBInstances",
"gpdb:DescribeDBInstanceAttribute"
],
"Resource": "*",
"Effect": "Allow"
},
{
"Action": [
"adb:DescribeDBClusters",
"adb:DescribeSchemas",
"adb:DescribeTables"
],
"Resource": "*",
"Effect": "Allow"
},
{
"Effect": "Allow",
"Action": [
"alikafka:ListInstance",
"alikafka:ListTopic",
"alikafka:CreateTopic",
"alikafka:UpdateTopic",
"alikafka:ListGroup",
"alikafka:CreateGroup",
"alikafka:ListAcl",
"alikafka:CreateAcl",
"alikafka:ListSaslUser",
"alikafka:CreateSaslUser"
],
"Resource": "*"
},
{
"Effect": "Allow",
"Action": "ram:DeleteServiceLinkedRole",
"Resource": "*",
"Condition": {
"StringEquals": {
"ram:ServiceName": "connector.alikafka.aliyuncs.com"
}
}
}
]
}相关文档
该文章对您有帮助吗?