百度智能云

All Product Document

          Reference

          Organization Unit

          Overview

          The organizational unit is a tree-like management structure based on the organizational structure within the enterprise or the service relationship between enterprises, which can help you improve the efficiency of account management. An organizational unit is a container for enterprise account and service control policies. The root node isroot. You can add a service control policy to the organizational unit, or you can add lower-level sub-units to add member accounts in the enterprise organization to the unit. The lower-level sub-units and accounts will automatically inherit the privilege policy of the parent unit to achieve the group control of member accounts, such as privileges and finance, etc.

          Typical Scene

          Among the enterprise customers currently using Baidu AI Cloud enterprise organization services, there are two scenarios:

          • Organization-based account management in the enterprise
            According to the organizational structure of the customer, the information department in charge of IT management is responsible for and maintains the master account, and performs unified account, authority and financial management; other business divisions within the enterprise separately apply for the use of the account and join the enterprise organization. The member accounts of the business division are divided into different organizational units, and the resources that can be accessed by these organizational units are subject to specific business restrictions and are achieved through the configuration of service control policies.
          • Account management between agents and their clients
            The agency company represents Baidu AI Cloud to provide cloud services for its customers. Each project or customer needs an independent account for separate financial settlement and management. At this time, the agency customer administrator will establish an enterprise organization based on the current account and create member account for its customer. The member accounts of these customers are grouped and managed in the form of organizational units, and the client member accounts are restricted from viewing certain system function operations and financial information through service control policies. For details, please see Financial Management.

          Product Restrictions

          • You can create up to10 organizational units;
          • Organizational unit nesting does not exceed 5 levels, excluding root level.

          Prerequisite

          • The account has enabled enterprise organization functions;
          • Account system administrator privileges;

          View the Organizational Unit Tree

          1. Log in to Baidu AI Cloud Console and find Enterprise Organization in the top navigation bar;
          2. Enter Organization Unit in the left navigation bar, and the Organization Unit tree will be displayed on the left side of the page;
          3. Select an organizational unit node to view the accounts and privileges policies contained in the current unit.

          Note: The root node of the organization is Root and cannot be edited or deleted.

          image.png

          Create Organizational Unit

          1. Log in to Baidu AI Cloud Console and navigate to Enterprise Organization > Organization Unit;
          2. Expand the organization unit tree, move the mouse to the target organization, and click the Add button after the unit name;
          3. Fill in the unit name in the pop-up window (it needs to be unique within the same organization), remarks, and select the required additional strategy;
          4. Click Confirm to create a sub-unit for the selected unit.

          image.png

          image.png

          Management Organizational Unit

          You can edit existing organizational units, move member accounts between units, and manage privileges policies for organizational units. This section describes how to manage organizational units.

          Edit Organizational Unit

          1. Log in to Baidu AI Cloud Console and navigate to Enterprise Organization>Organization Unit;
          2. Expand the organization unit tree, move the mouse to the target organization, click the Edit button after the unit name;
          3. Edit the content in the popup: Unit name, remarks, switching to higher-level units, modifying privilege policies, etc .;
          4. Click Confirm to finish editing the current unit.

          Mobile Account

          1. Log in to Baidu AI Cloud Console and navigate to Enterprise Organization > Organization Unit;
          2. Expand the organizational unit tree, click to enter an organizational unit;
          3. In the Account module in the middle content area, check the accounts that need to be moved (you can check multiple), click the Move to button in the upper right corner; you can also check the accounts and click directly Remove, and the selected account will be moved directly to the Root unit;
          4. After selecting the target organizational unit to be moved in the popup window, click Confirm, and the selected account will be moved to the target organizational unit;

          image.png

          image.png

          Additional Strategy

          1. Log in to Baidu AI Cloud Console and navigate to Enterprise Organization > Organization Unit;
          2. Expand the organizational unit tree, click to enter an organizational unit;
          3. In the Privilege Policy module in the middle content area, click Additional Policy;
          4. Select the service control strategy that needs to be added in the popup window, and click Confirm to attach the strategy to the current unit

          Removal Strategy

          1. Log in to Baidu AI Cloud Console and navigate to Enterprise Organization > Organization Unit;
          2. Expand the organizational unit tree, click to enter an organizational unit;
          3. In the Privilege Policy module in the middle content area, check the policies that need to be removed (you can check multiple), and click the Remove button at the top right to complete the policy removal operation.

          The privilege policy displays the policy from the parent organizational unit by default, and identifies the Inherited tag and source unit. The policy inherited from the parent unit cannot be removed.

          Delete Organizational Unit

          In some business scenarios, such as the division or reorganization of a business group, it is necessary to reconstruct the existing organizational unit tree. At this time, it involves deleting the existing organizational unit. This section will introduce how to delete the organizational unit.

          1. Log in to Baidu AI Cloud Console and navigate to Enterprise Organization > Organization Unit;
          2. Expand the organizational unit tree, move the mouse to the target organization, and click the Delete button after the unit name; 3.Confirm to delete the unit in the popup window.

          Note: Before deleting the unit, please confirm that all accounts in the unit have been removed from the unit to prevent accidental deletion and affecting your business.

          Previous
          Account Authorization
          Next
          Resource Management