Services of the cloud platform interwork with each other, and some cloud services are dependent on other services. To delegate a cloud service to access other services and perform resource O&M, create an agency for the service.
Create an agency based on Creating an Agency and set parameters as follows:
Policy Name | Scenario |
|---|---|
VPC Administrator | Users with the VPC Administrator permissions can perform any operations on all cloud resources of the VPC. For example, to configure cross-VPC access, you must specify an agency with VPC management permissions. |
DNS ReadOnlyAccess | Users with the DNS ReadOnlyAccess permissions can read DNS resources. For example, to invoke a DNS API to resolve private domain names, you must specify an agency with the permissions to read DNS resources. |
Modifying an agency: You can modify the permissions, validity period, and description of an agency on the IAM console.