| CAM中产品名 | 角色名称 | 角色类型 | 角色载体 |
|---|---|---|---|
| 云服务器 | CVM_QCSLinkedRoleInCbsInit | 服务相关角色 | cbsinit.cvm.cloud.tencent.com |
| 云服务器 | CVM_QCSLinkedRoleInClawPro | 服务相关角色 | clawpro.cvm.cloud.tencent.com |
| 云服务器 | CVM_QCSLinkedRoleInOpenClaw | 服务相关角色 | openclaw.cvm.cloud.tencent.com |
| 云服务器 | CVM_QCSLinkedRoleInClawProAgent | 服务相关角色 | cvm.qcloud.com |
| 云服务器 | CVM_QCSLinkedRoleInCVMRecommender | 服务相关角色 | CVMRecommender.cvm.cloud.tencent.com |
| 云服务器 | CVM_QCSLinkedRoleInCVMSmartDiagnostic | 服务相关角色 | cvmsmartdiagnostic.cvm.cloud.tencent.com |
使用场景: 当前角色为云服务器(CVM)服务相关角色,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"version": "2.0",
"statement": [
{
"effect": "allow",
"resource": [
"*"
],
"action": [
"tat:RunCommand",
"tat:DescribeInvocations",
"tat:DescribeInvocationTasks",
"tat:DescribeAutomationAgentStatus"
]
}
]
}
使用场景: 当前角色为 云服务器-ClawPro 服务角色,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"version": "2.0",
"statement": [
{
"effect": "allow",
"action": [
"cvm:*",
"tat:*",
"vpc:*",
"ses:*",
"sms:*",
"cos:*",
"cls:*",
"csip:*",
"cwp:*",
"cam:PassRole",
"orcaterm:*",
"vdb:*",
"smh:*"
],
"resource": "*"
},
{
"effect": "allow",
"action": [
"finance:trade"
],
"resource": [
"qcs::cvm:::*",
"qcs::cls:::*",
"qcs::vdb:::*"
]
}
]
}
使用场景: 当前角色为 云服务器-OpenClaw 服务角色,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"version": "2.0",
"statement": [
{
"effect": "allow",
"action": [
"cvm:*",
"tat:*",
"vpc:*",
"ses:*",
"sms:*"
],
"resource": "*"
},
{
"effect": "allow",
"action": [
"finance:trade"
],
"resource": [
"qcs::cvm:::*"
]
}
]
}
使用场景: 当前角色为 云服务器-ClawProAgent 服务角色,用于智能体访问腾讯云资源,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"statement": [
{
"action": [
"cls:pushLog",
"cls:getConfig",
"cls:agentHeartBeat",
"cls:MetricsRemoteWrite",
"cls:OpenClawService"
],
"effect": "allow",
"resource": [
"*"
]
}
],
"version": "2.0"
}
使用场景: 当前角色为云服务器(CVM)服务相关角色,该角色将在已关联策略的权限范围内访问您的CVM资源使用情况及相应的降本优化建议
权限策略
{
"version": "2.0",
"statement": [
{
"effect": "allow",
"action": [
"cos:ListParts",
"cos:PostObject",
"cos:PutObject*",
"cos:InitiateMultipartUpload",
"cos:UploadPart",
"cos:UploadPartCopy",
"cos:CompleteMultipartUpload",
"cos:AbortMultipartUpload",
"cos:ListMultipartUploads",
"organization:DescribeOrganizationMembers",
"organization:CreateOrgMemberProductServiceRole",
"region:DescribeRegions",
"cvm:DescribeInstances",
"cvm:DescribeInstancesStatus",
"monitor:GetMonitorData",
"cvm:InquiryPriceResetInstancesType",
"cvm:InquiryPriceTerminateInstances",
"cvm:DescribeZoneInstanceConfigInfos",
"cvm:InquiryPriceRunInstances",
"organization:DescribeOrganization"
],
"resource": "*"
}
]
}
使用场景: 当前角色为云服务器(CVM)服务相关角色,该角色将在已关联策略的权限范围内访问您的其他云服务资源。
权限策略
{
"version": "2.0",
"statement": [
{
"action": [
"tat:DescribeAutomationAgentStatus",
"tat:RunCommand",
"tat:DescribeInvocationTasks",
"cwp:DescribeMachineInfo",
"cwp:DescribeMalWareList",
"cwp:DescribeHostLoginList",
"cwp:DescribeBruteAttackList",
"cwp:DescribeRiskDnsList",
"cwp:DescribeBashEvents"
],
"resource": "*",
"effect": "allow"
}
]
}
文档反馈