All Products
Search
Document Center

Resource Access Management:AliyunServiceRolePolicyForGDB

Last Updated:Dec 28, 2023

AliyunServiceRolePolicyForGDB is the authorization policy dedicated to a service-linked role. The policy is automatically attached to a service role when the service role is created. Then, the service-linked role is authorized to access other cloud services. This policy is updated by the relevant Alibaba Cloud service. Do not attach this policy to a RAM identity other than a service-linked role.

Policy details

  • Type: service system policy

  • Creation time: 10:48:28 on October 27, 2023

  • Update time: 10:48:28 on October 27, 2023

  • Current version: v1

Policy content

{
    "Version": "1",
    "Statement": [
        {
            "Action": [
                "oss:GetObject",
                "oss:GetBucket",
                "oss:GetObjectMeta",
                "oss:ListObjects"
            ],
            "Resource": "*",
            "Effect": "Allow"
        },
        {
            "Action": "ram:DeleteServiceLinkedRole",
            "Resource": "*",
            "Effect": "Allow",
            "Condition": {
                "StringEquals": {
                    "ram:ServiceName": "gdb.aliyuncs.com"
                }
            }
        }
    ]
}

References