If you use your Alibaba Cloud account to purchase resources and manage applications as a RAM user, you can manage account permissions by using resource groups.
You can grant RAM users the permissions on a resource group. This way, each authorized RAM user can manage all the resources in the resource group. For more information, see Overview.
Note In Enterprise Distributed Application Service (EDAS), Elastic Service Compute (ECS) instances, Server Load Balancer (SLB) instances, and clusters can be bound to a resource group. However, virtual private clouds (VPCs) cannot be bound to a resource group.
Typical scenarios
- A company uses EDAS to deploy applications. The company has two departments: Department A and Department B. Department A is responsible for user-related applications and Department B is responsible for product-related applications.
- Department A and Department B use the same EDAS account to activate EDAS and create a RAM user. Department A uses dedicated ECS and SLB instances to deploy user-related applications.
- The company creates a resource group in EDAS, adds the ECS and SLB instances of Department A to the resource group. The RAM user of Department A is authorized to use the resource group.
- The RAM user of Department A can manage the resources of the resource group, but cannot manage the resources of Department B. Therefore, Departments A and B do not affect each other.
Go to the Resource Groups page
- Log on to the EDAS console.
- In the left-side navigation pane, choose .
- On the Resource Groups page, select a region to view the resource groups in the region and the ECS and SLB instances in the resource groups.
View a resource group
On the Resource Groups page, you can view the information of a resource group. The information includes Resource Group Name, Description, ECS Instance IP (Internal/Public IP Address), SLB Instance ID, and Cluster Name.
Create a resource group
- On the Resource Groups page, click Create Resource Group in the upper-right corner.
- In the Create Resource Group dialog box, specify Name and Description, and click OK.
Add an ECS instance to a resource group
- On the Resource Groups page, find the resource group to which you want to add an ECS instance. Click Bind ECS in the Actions column.
- In the Bind ECS dialog box, select an ECS instance, and click OK.
Synchronize SLB instances and add an SLB instance to a resource group
If you have purchased SLB instances, EDAS allows you to synchronize your SLB instances to the EDAS console. Then, you can configure and use load balancing.
- On the Resource Groups page, find the resource group to which you want to add an SLB instance. Click Bind SLB in the Actions column.
- In the Bind SLB dialog box, click Synchronize SLB to synchronize your SLB instances to the EDAS console.
- In the Bind SLB dialog box, select an SLB instance, and click OK.
Modify a resource group
- On the Resource Groups page, find the resource group that you want to modify. Click Edit in the Actions column.
- In the Edit Resource Group dialog box, modify the resource group name and description, and then click OK.
Delete a resource group
- On the Resource Groups page, find the resource group that you want to delete. Click Delete in the Actions column.
- In the Delete Resource Group message, click Delete.
Authorize a RAM user to access a resource group
- Log on to the EDAS console by using your Alibaba Cloud account.
- In the left-side navigation pane, choose .
- On the RAM User page, find the user that you want to authorize. Click Resource Group Authorized in the Authorize Resource Group column.
- In the Authorize Resource Group dialog box, select a resource group, and click OK.