Authorization
Updated at:2025-10-27
Permission controls only take effect when policies are assigned to specific user identities. Currently, IAM supports authorization operations for three types of identities.
Grant permissions to IAM users
Users can directly assign system policies or custom policies to IAM users. In the IAM User management list, click Add Permission to authorize the IAM users. IAM user permissions are governed by directly assigned policies and also inherit permission policies from their groups.

Grant permissions to group
It is recommended to add your users to groups and grant permission policies to those groups. In the group management list, click Edit to authorize the group.

Grant permissions to a role
In the role management, locate the target role, click Edit, and under the Permission Info module, click Authorize to grant permissions.
