tencent cloud

フィードバック

Authorizing a Sub-account Read/Write Access to All Files in Specified Directory Except Specified Files

最終更新日:2024-01-23 18:02:53
The organizational account CompanyExample (ownerUin: 12345678; appId: 1250000000) has a sub-account Developer that requires read/write permissions for all objects except the Object1 object in the dir1 directory of the Bucket1 bucket of the COS service in the Shanghai region under the CompanyExample account.
Solution A:
Step 1. Create the following policy according to the policy syntax:
{
"version": "2.0",
"statement":
[
{
"effect": "allow",
"action": "cos:*",
"resource": "qcs::cos:ap-shanghai:uid/1250000000:Bucket1-1250000000/dir1/*"
},
{
"effect": "deny",
"action": "cos:*",
"resource": "qcs::cos:ap-shanghai:uid/1250000000:Bucket1-1250000000/dir1/Object1"
}
]
}
Step 2. Associate the policy with the sub-account. For more information on authorization, please see Authorization Management.
Solution B:
Set the policy and ACL in the COS Console. For more information, please see ACL Practices.
お問い合わせ

カスタマーサービスをご提供できるため、ぜひお気軽にお問い合わせくださいませ。

テクニカルサポート

さらにサポートが必要な場合は、サポートチケットを送信して弊社サポートチームにお問い合わせください。24時間365日のサポートをご提供します。

電話サポート(24 時間365日対応)