AliyunServiceRolePolicyForPolarDBAgent

更新时间:
复制为 MD 格式

AliyunServiceRolePolicyForPolarDBAgent 是专用于服务关联角色的授权策略,会在创建服务关联角色 AliyunServiceRoleForPolarDBAgent 时自动授权,以允许服务关联角色代您访问其他云服务。本策略由对应的阿里云服务按需更新,请勿将本策略授权给服务关联角色之外的 RAM 身份使用。

策略详情

  • 类型:系统策略

  • 创建时间:2026-01-26 19:43:20

  • 更新时间:2026-01-26 19:43:20

  • 当前版本:v1

策略内容

{
  "Version": "1",
  "Statement": [
    {
      "Effect": "Allow",
      "Action": [
        "polardb:GetPolarAgent",
        "polardb:DescribePolarAgentSessionStatus",
        "polardb:DescribePolarAgentChatRecords",
        "polardb:DescribePolarAgentUserSessions",
        "polardb:DescribeAutoRenewAttribute",
        "polardb:DescribeDBClusters",
        "polardb:DescribeDBLogFiles",
        "polardb:DescribeTableList",
        "polardb:CheckAccountName",
        "polardb:CheckConnectionString",
        "polardb:CheckDBClusterWhitelist",
        "polardb:CheckDBName",
        "polardb:CheckKMSAuthorized",
        "polardb:CheckMPPCondition",
        "polardb:CheckServiceLinkedRole",
        "polardb:CheckSqlLogHistoryEnable",
        "polardb:DescribeAccountMaskingPrivilege",
        "polardb:DescribeAccounts",
        "polardb:DescribeActiveOperationMaintainConf",
        "polardb:DescribeActiveOperationTask",
        "polardb:DescribeActiveOperationTaskCount",
        "polardb:DescribeActiveOperationTaskRegion",
        "polardb:DescribeActiveOperationTasks",
        "polardb:DescribeActiveOperationTaskType",
        "polardb:DescribeAIDBClusterAttribute",
        "polardb:DescribeAIDBClusterPerformance",
        "polardb:DescribeAIDBClusterResourceUsage",
        "polardb:DescribeAIDBClusters",
        "polardb:DescribeAIDBClusterTaskAttribute",
        "polardb:DescribeAITaskStatus",
        "polardb:DescribeApplicationAttribute",
        "polardb:DescribeApplicationAvailableVersion",
        "polardb:DescribeApplicationComponentPerformance",
        "polardb:DescribeApplicationParameters",
        "polardb:DescribeApplicationPerformance",
        "polardb:DescribeApplications",
        "polardb:DescribeApplicationServerlessConf",
        "polardb:DescribeAuthenticate",
        "polardb:DescribeAvailableCrossRegions",
        "polardb:DescribeBackupLogs",
        "polardb:DescribeBackupPolicy",
        "polardb:DescribeBackupRegions",
        "polardb:DescribeBackups",
        "polardb:DescribeBackupTasks",
        "polardb:DescribeClassList",
        "polardb:DescribeColdStorageInstance",
        "polardb:DescribeDasConfig",
        "polardb:DescribeDatabases",
        "polardb:DescribeDBClusterAccessWhitelist",
        "polardb:DescribeDBClusterAttribute",
        "polardb:DescribeDBClusterAuditLogCollector",
        "polardb:DescribeDBClusterBasicInfo",
        "polardb:DescribeDBClusterConnectivity",
        "polardb:DescribeDBClusterEncryptionKey",
        "polardb:DescribeDBClusterEndpoints",
        "polardb:DescribeDBClusterExpireInfo",
        "polardb:DescribeDBClusterIPArrayList",
        "polardb:DescribeDBClusterMigration",
        "polardb:DescribeDBClusterMonitor",
        "polardb:DescribeDBClusterNetInfo",
        "polardb:DescribeDBClusterNodeInfo",
        "polardb:DescribeDBClusterParameters",
        "polardb:DescribeDBClusterPerformance",
        "polardb:DescribeDBClusterProxy",
        "polardb:DescribeDBClusterServerlessConf",
        "polardb:DescribeDBClusterSSL",
        "polardb:DescribeDBClustersWithBackups",
        "polardb:DescribeDBClusterTDE",
        "polardb:DescribeDBClusterUsage",
        "polardb:DescribeDBClusterVersion",
        "polardb:DescribeDBClusterVersionZonal",
        "polardb:DescribeDBDefaultValueByGcLevel",
        "polardb:DescribeDBInitializeVariable",
        "polardb:DescribeDBInstancePerformance",
        "polardb:DescribeDBInstances",
        "polardb:DescribeDBLinks",
        "polardb:DescribeDBMiniEngineVersions",
        "polardb:DescribeDBNodePerformance",
        "polardb:DescribeDBNodesParameters",
        "polardb:DescribeDBProxyPerformance",
        "polardb:DescribeDetachedBackups",
        "polardb:DescribeTasks",
        "polardb:DescribeTaskInfo",
        "polardb:DescribeStoragePlan",
        "polardb:DescribeUpgradeReport",
        "polardb:DescribeTemplateSqlDetail",
        "polardb:DescribeUserEncryptionKeyList",
        "polardb:DescribeVpcs",
        "polardb:DescribeVSwitches",
        "polardb:ListTagResources",
        "polardb:CheckAccountNameZonal",
        "polardb:CheckDBNameZonal",
        "polardb:DescribeActivationCodeDetails",
        "polardb:DescribeActivationCodes",
        "polardb:DescribeEncryptionDBRolePrivilege",
        "polardb:DescribeEventMetaInfo",
        "polardb:DescribeEventOverview",
        "polardb:DescribeExtensions",
        "polardb:DescribeFirewallRules",
        "polardb:DescribeGlobalDatabaseNetwork",
        "polardb:DescribeGlobalDatabaseNetworks",
        "polardb:DescribeGlobalSecurityIPGroup",
        "polardb:DescribeGlobalSecurityIPGroupRelation",
        "polardb:DescribeHALogs",
        "polardb:DescribeHistoryEvents",
        "polardb:DescribeHistoryEventsIntervalStat",
        "polardb:DescribeHistoryEventsStat",
        "polardb:DescribeHistoryTasks",
        "polardb:DescribeHistoryTasksStat",
        "polardb:DescribeLocalAvailableRecoveryTime",
        "polardb:DescribeLogBackupPolicy",
        "polardb:DescribeMaskingRules",
        "polardb:DescribeMetaList",
        "polardb:DescribeModifyParameterLog",
        "polardb:DescribeMPPCondition",
        "polardb:DescribeParameterGroup",
        "polardb:DescribeParameterGroups",
        "polardb:DescribeParameterTemplates",
        "polardb:DescribePendingMaintenanceAction",
        "polardb:DescribePendingMaintenanceActions",
        "polardb:DescribeRdsVpcs",
        "polardb:DescribeRdsVSwitchs",
        "polardb:DescribeScheduleTasks",
        "polardb:DescribeSharedBackups",
        "polardb:DescribeSlowLogRecords",
        "polardb:DescribeSlowLogs",
        "hdm:GetDasAgentSSE",
        "hdm:DescribeErrorLogRecords",
        "hdm:DescribeSlowLogRecords",
        "hdm:DescribeSqlLogConfig"
      ],
      "Resource": "*"
    },
    {
      "Action": "ram:DeleteServiceLinkedRole",
      "Resource": "*",
      "Effect": "Allow",
      "Condition": {
        "StringEquals": {
          "ram:ServiceName": "agent.polardb.aliyuncs.com"
        }
      }
    }
  ]
}

相关文档