全部产品
Search
文档中心

边缘节点服务ENS:授权信息

更新时间:Feb 04, 2026

访问控制(RAM)是阿里云提供的管理用户身份与资源访问权限的服务。使用 RAM 可以让您避免与其他用户共享阿里云账号密钥,并可按需为用户授予最小权限。RAM 中使用权限策略描述授权的具体内容。

本文为您介绍 边缘节点服务 ENS 为 RAM 权限策略定义的操作(Action)、资源(Resource)和条件(Condition)。 边缘节点服务 ENS 的 RAM 代码(RamCode)为 ens ,支持的授权粒度为 资源级

权限策略通用结构

权限策略支持 JSON 格式,其通用结构如下:

{
  "Version": "1",
  "Statement": [
    {
      "Effect": "<Effect>",
      "Action": "<Action>",
      "Resource": "<Resource>",
      "Condition": {
        "<Condition_operator>": {
          "<Condition_key>": [
            "<Condition_value>"
          ]
        }
      }
    }
  ]
}        

各字段含义如下:

  • Effect:权限策略效果。取值:Allow(允许)、Deny(拒绝)。

  • Action:授予允许或拒绝权限的具体操作。具体信息,请参见操作(Action)

  • Resource:受操作影响的具体对象,您可以使用资源 ARN 来描述指定资源。具体信息,请参见资源(Resource)

  • Condition:指授权生效的条件。可选字段。具体信息,请参见条件(Condition)

    • Condition_operator:条件运算符,不同类型的条件对应不同的条件运算符。具体信息,请参见权限策略基本元素

    • Condition_key:条件关键字。

    • Condition_value:条件关键字对应的值。

操作(Action)

下表是边缘节点服务 ENS定义的操作,这些操作可以在 RAM 权限策略语句的Action元素中使用,用来授予执行该操作的权限。下面对表中的具体项提供说明:

  • 操作:是指具体的权限点。

  • API:是指操作对应的 API 接口。

  • 访问级别:是指每个操作的访问级别,取值为写入(Write)、读取(Read)或列出(List)。

  • 资源类型:是指操作中支持授权的资源类型。具体说明如下:

    • 对于必选的资源类型,用前面加 * 表示。

    • 对于不支持资源级授权的操作,用全部资源表示。

  • 条件关键字:是指云产品自身定义的条件关键字。该列不体现适用于任何操作的通用条件关键字

  • 关联操作:是指成功执行操作所需要的其他权限。操作者必须同时具备关联操作的权限,操作才能成功。

操作

API

访问级别

资源类型

条件关键字

关联操作

ens:RebootAICInstance RebootAICInstance update

*全部资源

*

ens:GetOssUsageData GetOssUsageData

*全部资源

*

ens:DescribeBandwitdhByInternetChargeType DescribeBandwitdhByInternetChargeType get

*全部资源

*

ens:DescribeInstanceVncUrl DescribeInstanceVncUrl get

*全部资源

*

ens:CreateLoadBalancerTCPListener CreateLoadBalancerTCPListener create

*全部资源

*

ens:CreateSnapshot CreateSnapshot create

*全部资源

*

ens:ModifyInstanceChargeType ModifyInstanceChargeType update

*Instance

acs:ens:*:{#accountId}:instance/{#InstanceId}

ens:DeleteApplication DeleteApplication delete

*全部资源

*

ens:DescribeMountTargets DescribeMountTargets

*全部资源

*

ens:ModifyEnsRouteEntry ModifyEnsRouteEntry update

*全部资源

*

ens:DeleteNetworkAcl DeleteNetworkAcl create

*全部资源

*

ens:DescribeDisks DescribeDisks get

*Disk

acs:ens::{#accountId}:disk/{#DiskId}

ens:ModifyImageSharePermission ModifyImageSharePermission update

*Image

acs:ens::{#accountId}:image/{#ImageId}

ens:DescribeInstanceAutoRenewAttribute DescribeInstanceAutoRenewAttribute get

*全部资源

*

ens:ModifyLoadBalancerAttribute ModifyLoadBalancerAttribute update

*全部资源

*

ens:DescribeLoadBalancerAttribute DescribeLoadBalancerAttribute get

*全部资源

*

ens:ModifySnapshotAttribute ModifySnapshotAttribute

*全部资源

*

ens:UnassociateHaVip UnassociateHaVip update

*全部资源

*

ens:ModifyVSwitchAttribute ModifyVSwitchAttribute update

*全部资源

*

ens:ReleasePostPaidInstance ReleasePostPaidInstance delete

*Instance

acs:ens:*:{#accountId}:instance/{#InstanceId}

ens:ModifyNetworkAttribute ModifyNetworkAttribute update

*全部资源

*

ens:CreateNetwork CreateNetwork create

*全部资源

*

ens:CreateStorageGateway CreateStorageGateway create

*全部资源

*

ens:AssignPrivateIpAddresses AssignPrivateIpAddresses create

*全部资源

*

ens:CopySnapshot CopySnapshot create

*全部资源

*

ens:DescribeSnapshots DescribeSnapshots list

*全部资源

*

ens:GetOssStorageAndAccByBuckets GetOssStorageAndAccByBuckets

*全部资源

*

ens:RebootARMServerInstance RebootARMServerInstance get

*全部资源

*

ens:ModifyAICInstanceType ModifyAICInstanceType update

*全部资源

*

ens:ListAddons ListAddons create

*全部资源

*

ens:DeleteNetwork DeleteNetwork delete

*全部资源

*

ens:DescribePrice DescribePrice get

*全部资源

*

ens:DescribeInstanceSpec DescribeInstanceSpec get

*全部资源

*

ens:DescribeInstanceSDGStatus DescribeInstanceSDGStatus list

*全部资源

*

ens:InstallClusterAddons InstallClusterAddons create

*全部资源

*

ens:DescribeNASAvailableResourceInfo DescribeNASAvailableResourceInfo get

*全部资源

*

ens:ModifySnatEntry ModifySnatEntry update

*NatGatewaySnatEntry

acs:ens::{#accountId}:natgatewaysnatentry/{#SnatEntryId}

ens:DescribeSecurityGroupAttribute DescribeSecurityGroupAttribute get

*全部资源

*

ens:DescribeClusterKubeConfig DescribeClusterKubeConfig get

*全部资源

*

ens:DescribeHistoryEvents DescribeHistoryEvents none

*全部资源

*

ens:DescribeLoadBalancerListeners DescribeLoadBalancerListeners list

*全部资源

*

ens:DetachNetworkInterface DetachNetworkInterface update

*全部资源

*

ens:AttachInstanceSDG AttachInstanceSDG none

*全部资源

*

ens:DeleteForwardEntry DeleteForwardEntry delete

*全部资源

*

ens:DescribeVSwitches DescribeVSwitches list

*全部资源

*

ens:CreateSDG CreateSDG none

*全部资源

*

ens:JoinSecurityGroup JoinSecurityGroup update

*全部资源

*

ens:DeleteClusterNodePool DeleteClusterNodePool delete

*全部资源

*

ens:DeleteSDG DeleteSDG none

*全部资源

*

ens:SetLoadBalancerUDPListenerAttribute SetLoadBalancerUDPListenerAttribute update

*全部资源

*

ens:DescribeLoadBalancers DescribeLoadBalancers list

*全部资源

*

ens:AccosicateNetworkAcl AccosicateNetworkAcl update

*全部资源

*

ens:RescaleDeviceService RescaleDeviceService update

*全部资源

*

ens:DescribeSDGs DescribeSDGs none

*全部资源

*

ens:DescribeSDGSharedDisks DescribeSDGSharedDisks none

*全部资源

*

ens:RemoveSDG RemoveSDG update

*全部资源

*

ens:LeaveSecurityGroup LeaveSecurityGroup update

*全部资源

*

ens:EventRedeployInstance EventRedeployInstance none

*全部资源

*

ens:ModifyForwardEntry ModifyForwardEntry update

*全部资源

*

ens:DescribeNetworks DescribeNetworks list

*全部资源

*

ens:RunInstances RunInstances create

*Instance

acs:ens:*:{#accountId}:instance/*

ens:DeleteMountTarget DeleteMountTarget

*全部资源

*

ens:BatchEventRebootInstance BatchEventRebootInstance none

*全部资源

*

ens:RollbackApplication RollbackApplication update

*全部资源

*

ens:RemoveInstanceSDG RemoveInstanceSDG update

*全部资源

*

ens:JoinVSwitchesToEpnInstance JoinVSwitchesToEpnInstance update

*全部资源

*

ens:DescribeNetworkAttribute DescribeNetworkAttribute get

*全部资源

*

ens:ModifyInstanceAutoRenewAttribute ModifyInstanceAutoRenewAttribute update

*全部资源

*

ens:DeleteLoadBalancerListener DeleteLoadBalancerListener delete

*全部资源

*

ens:CreateStorageVolume CreateStorageVolume create

*全部资源

*

ens:StopInstance StopInstance update

*Instance

acs:ens:*:{#accountId}:instance/{#InstanceId}

ens:DescribeRegionIsps DescribeRegionIsps list

*全部资源

*

ens:DescribeEnsRegionIdIpv6Info DescribeEnsRegionIdIpv6Info

*全部资源

*

ens:ReleaseInstance ReleaseInstance delete

*全部资源

*

ens:RunServiceSchedule RunServiceSchedule update

*全部资源

*

ens:DeleteObject DeleteObject delete

*全部资源

*

ens:DescribeInstanceMonitorData DescribeInstanceMonitorData get

*全部资源

*

ens:CreateClassicNetwork CreateClassicNetwork

*全部资源

*

ens:DeleteVSwitch DeleteVSwitch delete

*全部资源

*

ens:DescribeServerLoadBalancerMonitor DescribeServerLoadBalancerMonitor list

*全部资源

*

ens:RescaleApplication RescaleApplication update

*全部资源

*

ens:DeleteFileSystem DeleteFileSystem

*全部资源

*

ens:ReleaseARMServerInstance ReleaseARMServerInstance delete

*全部资源

*

ens:CreateSnatEntry CreateSnatEntry create

*全部资源

*

ens:AttachDisk AttachDisk update

*全部资源

*

ens:ModifyNetworkInterfaceAttribute ModifyNetworkInterfaceAttribute update

*全部资源

*

ens:DistApplicationData DistApplicationData update

*全部资源

*

ens:DeleteCluster DeleteCluster delete

*全部资源

*

ens:DescribeSelfImages DescribeSelfImages list

*全部资源

*

ens:SetBackendServers SetBackendServers update

*全部资源

*

ens:ModifyInstanceAttribute ModifyInstanceAttribute update

*Instance

acs:ens:*:{#accountId}:instance/{#InstanceId}

ens:CreateForwardEntry CreateForwardEntry create

*全部资源

*

ens:AssociateEnsEipAddress AssociateEnsEipAddress update

*全部资源

*

ens:DescribeHaVips DescribeHaVips list

*全部资源

*

ens:DescribeLoadBalancerListenMonitor DescribeLoadBalancerListenMonitor none

*全部资源

*

ens:ModifyPrepayInstanceSpec ModifyPrepayInstanceSpec update

*全部资源

*

ens:StopLoadBalancerListener StopLoadBalancerListener update

*全部资源

*

ens:DescribeLoadBalancerHTTPListenerAttribute DescribeLoadBalancerHTTPListenerAttribute get

*全部资源

*

ens:CreateCluster CreateCluster create

*全部资源

*

ens:DescribeNetworkAcls DescribeNetworkAcls list

*全部资源

*

ens:PutBucket PutBucket create

*全部资源

*

ens:DescribeClusterUserKubeconfig DescribeClusterUserKubeconfig get

*全部资源

*

ens:ImportKeyPair ImportKeyPair create

*全部资源

*

ens:DescribeSnatTableEntries DescribeSnatTableEntries list

*全部资源

*

ens:DescribeStorageGateway DescribeStorageGateway list

*全部资源

*

ens:AttachNetworkInterface AttachNetworkInterface update

*全部资源

*

ens:AuthorizeSecurityGroupEgress AuthorizeSecurityGroupEgress update

*全部资源

*

ens:DescribeExportImageInfo DescribeExportImageInfo get

*全部资源

*

ens:DescribeAICImages DescribeAICImages none

*全部资源

*

ens:DescribeEnsRegions DescribeEnsRegions list

*全部资源

*

ens:DeployInstanceSDG DeployInstanceSDG none

*全部资源

*

ens:ModifyHaVipAttribute ModifyHaVipAttribute update

*全部资源

*

ens:DeleteNetworkAclEntry DeleteNetworkAclEntry

*全部资源

*

ens:MountInstanceSDG MountInstanceSDG none

*全部资源

*

ens:CreateLoadBalancerHTTPListener CreateLoadBalancerHTTPListener create

*全部资源

*

ens:DeleteStorageVolume DeleteStorageVolume delete

*全部资源

*

ens:StartSnatIpForSnatEntry StartSnatIpForSnatEntry

*全部资源

*

ens:DescribeEnsNetLevel DescribeEnsNetLevel

*全部资源

*

ens:ExportMeasurementData ExportMeasurementData get

*全部资源

*

ens:ModifySecurityGroupAttribute ModifySecurityGroupAttribute update

*全部资源

*

ens:DescribeUserBandWidthData DescribeUserBandWidthData get

*全部资源

*

ens:StartLoadBalancerListener StartLoadBalancerListener update

*全部资源

*

ens:DescribeDeviceService DescribeDeviceService get

*全部资源

*

ens:DescribeCloudDiskTypes DescribeCloudDiskTypes list

*全部资源

*

ens:PushApplicationData PushApplicationData update

*全部资源

*

ens:TagResources TagResources create

*全部资源

*

ens:DescribeServerLoadBalancerListenMonitor DescribeServerLoadBalancerListenMonitor list

*全部资源

*

ens:UnassignPrivateIpAddresses UnassignPrivateIpAddresses update

*全部资源

*

ens:DescribeEnsNetSaleDistrict DescribeEnsNetSaleDistrict

*全部资源

*

ens:DescribeClustersV1 DescribeClustersV1 create

*全部资源

*

ens:CreateLoadBalancer CreateLoadBalancer create

*全部资源

*

ens:CreateARMServerInstances CreateARMServerInstances create

*全部资源

*

ens:ModifyClusterNodePool ModifyClusterNodePool update

*全部资源

*

ens:EventRebootInstance EventRebootInstance none

*全部资源

*

ens:SetLoadBalancerHTTPSListenerAttribute SetLoadBalancerHTTPSListenerAttribute update

*全部资源

*

ens:CreateNetworkInterface CreateNetworkInterface create

*全部资源

*

ens:DetachInstanceSDG DetachInstanceSDG none

*全部资源

*

ens:GetBucketLifecycle GetBucketLifecycle get

*全部资源

*

ens:PreloadRegionSDG PreloadRegionSDG none

*全部资源

*

ens:CreateVSwitch CreateVSwitch create

*全部资源

*

ens:DescribeStorageVolume DescribeStorageVolume list

*全部资源

*

ens:ResizeDisk ResizeDisk update

*全部资源

*

ens:DescribeEpnInstanceAttribute DescribeEpnInstanceAttribute get

*全部资源

*

ens:DescribeForwardTableEntries DescribeForwardTableEntries list

*全部资源

*

ens:DescribeDataDownloadURL DescribeDataDownloadURL get

*全部资源

*

ens:DescribeSnatAttribute DescribeSnatAttribute get

*全部资源

*

ens:AddNetworkInterfaceToInstance AddNetworkInterfaceToInstance create

*全部资源

*

ens:BatchEventRedeployInstance BatchEventRedeployInstance none

*全部资源

*

ens:ModifyFileSystem ModifyFileSystem create

*全部资源

*

ens:DescribeCluster DescribeCluster get

*全部资源

*

ens:CreateNatGateway CreateNatGateway create

*全部资源

*

ens:DeleteEip DeleteEip delete

*全部资源

*

ens:AddBackendServers AddBackendServers create

*全部资源

*

ens:DescribeInstances DescribeInstances list

*Instance

acs:ens:*:{#accountId}:instance/{#InstanceId}

ens:UnInstallClusterAddons UnInstallClusterAddons create

*全部资源

*

ens:CreateEnsService CreateEnsService create

*全部资源

*

ens:DescribeImageSharePermission DescribeImageSharePermission get

*全部资源

*

ens:DescribeBandWithdChargeType DescribeBandWithdChargeType get

*全部资源

*

ens:DescribeNetworkInterfaces DescribeNetworkInterfaces list

*全部资源

*

ens:CreateSecurityGroup CreateSecurityGroup create

*全部资源

*

ens:DescribeInstanceBootConfiguration DescribeInstanceBootConfiguration get

*全部资源

*

ens:SetLoadBalancerTCPListenerAttribute SetLoadBalancerTCPListenerAttribute update

*全部资源

*

ens:DescribeDiskIopsList DescribeDiskIopsList none

*disk

acs:ens::{#accountId}:disk/{#DiskId}

ens:InitializeENSECKServiceRole InitializeENSECKServiceRole create

*全部资源

*

ens:CreateImage CreateImage create

*全部资源

*

ens:ListClusterAddonInstances ListClusterAddonInstances get

*全部资源

*

ens:DescribeCloudDiskAvailableResourceInfo DescribeCloudDiskAvailableResourceInfo get

*全部资源

*

ens:DescribeMeasurementData DescribeMeasurementData get

*全部资源

*

ens:DescribeLoadBalancerSpec DescribeLoadBalancerSpec get

*全部资源

*

ens:SetLoadBalancerHTTPListenerAttribute SetLoadBalancerHTTPListenerAttribute update

*全部资源

*

ens:ModifyEnsEipAddressAttribute ModifyEnsEipAddressAttribute update

*全部资源

*

ens:DescribeLoadBalancerUDPListenerAttribute DescribeLoadBalancerUDPListenerAttribute get

*全部资源

*

ens:ListAICPublicKeys ListAICPublicKeys none

*全部资源

*

ens:CreateFileSystem CreateFileSystem create

*全部资源

*

ens:DescribeClusterDetail DescribeClusterDetail get

*全部资源

*

ens:CreateEipInstance CreateEipInstance create

*全部资源

*

ens:DeleteDisk DeleteDisk delete

*全部资源

*

ens:GetBucketInfo GetBucketInfo get

*全部资源

*

ens:CopySDG CopySDG none

*全部资源

*

ens:DeleteSecurityGroupPermissions DeleteSecurityGroupPermissions delete

*全部资源

*

ens:DescribeEnsEipAddresses DescribeEnsEipAddresses list

*全部资源

*

ens:RemoveBackendServers RemoveBackendServers update

*全部资源

*

ens:ReInitDisk ReInitDisk create

*Disk

acs:ens::{#accountId}:disk/{#DiskId}

ens:DeploySDG DeploySDG create

*全部资源

*

ens:DescribeSecondaryPublicIpAddresses DescribeSecondaryPublicIpAddresses list

*全部资源

*

ens:PutBucketAcl PutBucketAcl none

*全部资源

*

ens:DescribeEnsRouteEntryList DescribeEnsRouteEntryList list

*全部资源

*

ens:CreateKeyPair CreateKeyPair create

*全部资源

*

ens:DescribeLoadBalancerHTTPSListenerAttribute DescribeLoadBalancerHTTPSListenerAttribute get

*全部资源

*

ens:BatchEventMigrateInstance BatchEventMigrateInstance none

*全部资源

*

ens:ListBuckets ListBuckets list

*全部资源

*

ens:ImportImage ImportImage create

*全部资源

*

ens:DescribeEnsRegionIdResource DescribeEnsRegionIdResource get

*全部资源

*

ens:DescribePrePaidInstanceStock DescribePrePaidInstanceStock get

*全部资源

*

ens:DescribeApplication DescribeApplication get

*全部资源

*

ens:UnAssociateEnsEipAddress UnAssociateEnsEipAddress update

*全部资源

*

ens:RemovePublicIpsFromEpnInstance RemovePublicIpsFromEpnInstance update

*全部资源

*

ens:DeleteClusterNodes DeleteClusterNodes delete

*全部资源

*

ens:DeleteEnsRouteEntry DeleteEnsRouteEntry delete

*全部资源

*

ens:DescribeEnsResourceUsage DescribeEnsResourceUsage get

*全部资源

*

ens:DescribeEpnBandWidthData DescribeEpnBandWidthData get

*全部资源

*

ens:ReinitInstance ReinitInstance update

*Instance

acs:ens:*:{#accountId}:instance/{#InstanceId}

ens:StartEpnInstance StartEpnInstance update

*全部资源

*

ens:DescribeEpnBandwitdhByInternetChargeType DescribeEpnBandwitdhByInternetChargeType get

*全部资源

*

ens:RenewARMServerInstance RenewARMServerInstance update

*全部资源

*

ens:ResetAICInstance ResetAICInstance update

*全部资源

*

ens:DescribeElbAvailableResourceInfo DescribeElbAvailableResourceInfo get

*全部资源

*

ens:DescribeForwardEntryAttribute DescribeForwardEntryAttribute get

*NatGatewayForwardEntry

acs:ens::{#accountId}:natgatewayforwardentry/{#ForwardEntryId}

ens:DescribeSDG DescribeSDG none

*全部资源

*

ens:ExportImage ExportImage get

*全部资源

*

ens:DeleteEpnInstance DeleteEpnInstance delete

*全部资源

*

ens:CreateApplication CreateApplication create

*全部资源

*

ens:CreateEnsRouteEntry CreateEnsRouteEntry create

*全部资源

*

ens:CreateNetworkAclEntry CreateNetworkAclEntry create

*全部资源

*

ens:DescribeServcieSchedule DescribeServcieSchedule

*全部资源

*

ens:ShareAICImage ShareAICImage none

*全部资源

*

ens:DeleteSnapshot DeleteSnapshot delete

*全部资源

*

ens:DescribeImages DescribeImages list

*全部资源

*

ens:StopSnatIpForSnatEntry StopSnatIpForSnatEntry

*全部资源

*

ens:CreateMountTarget CreateMountTarget create

*全部资源

*

ens:DescribeKeyPairs DescribeKeyPairs get

*全部资源

*

ens:DescribeEnsNetDistrict DescribeEnsNetDistrict get

*全部资源

*

ens:DeleteHaVips DeleteHaVips delete

*HaVip

acs:ens::{#accountId}:havip/{#HaVipIds}

ens:StopEpnInstance StopEpnInstance update

*全部资源

*

ens:DeleteSnatIpForSnatEntry DeleteSnatIpForSnatEntry delete

*全部资源

*

ens:JoinPublicIpsToEpnInstance JoinPublicIpsToEpnInstance update

*全部资源

*

ens:DeleteNatGateway DeleteNatGateway delete

*全部资源

*

ens:CreateLoadBalancerUDPListener CreateLoadBalancerUDPListener create

*全部资源

*

ens:ModifyEpnInstance ModifyEpnInstance update

*全部资源

*

ens:RebootInstance RebootInstance update

*Instance

acs:ens:*:{#accountId}:instance/{#InstanceId}

ens:SaveSDG SaveSDG none

*全部资源

*

ens:RevokeSecurityGroup RevokeSecurityGroup update

*全部资源

*

ens:DeleteNetworkInterfaces DeleteNetworkInterfaces none

*全部资源

*

ens:CreateDisk CreateDisk create

*全部资源

*

ens:AssociateHaVip AssociateHaVip update

*HaVip

acs:ens::{#accountId}:havip/{#HaVipId}

ens:UpgradeAICInstanceImage UpgradeAICInstanceImage update

*全部资源

*

ens:CreateNetworkAcl CreateNetworkAcl create

*全部资源

*

ens:CreateClusterNodePool CreateClusterNodePool create

*全部资源

*

ens:GetClusterAddonInstance GetClusterAddonInstance create

*全部资源

*

ens:DescribeSecurityGroups DescribeSecurityGroups list

*全部资源

*

ens:DeleteBucketLifecycle DeleteBucketLifecycle delete

*全部资源

*

ens:GetBucketAcl GetBucketAcl get

*全部资源

*

ens:ManageAICLogin ManageAICLogin none

*全部资源

*

ens:CreateLoadBalancerHTTPSListener CreateLoadBalancerHTTPSListener create

*全部资源

*

ens:DeleteKeyPairs DeleteKeyPairs delete

*全部资源

*

ens:DescribeDataDistResult DescribeDataDistResult get

*全部资源

*

ens:UnmountInstanceSDG UnmountInstanceSDG none

*全部资源

*

ens:ScaleClusterNodePool ScaleClusterNodePool update

*全部资源

*

ens:DescribeEnsRouteTables DescribeEnsRouteTables list

*全部资源

*

ens:PutBucketLifecycle PutBucketLifecycle none

*全部资源

*

ens:DetachDisk DetachDisk update

*全部资源

*

ens:DescribeAvailableResourceInfo DescribeAvailableResourceInfo get

*全部资源

*

ens:DescribeEpnMeasurementData DescribeEpnMeasurementData get

*全部资源

*

ens:ListProductAbilities ListProductAbilities list

*全部资源

*

ens:DescribeAddon DescribeAddon get

*全部资源

*

ens:RemoveSDGs RemoveSDGs none

*全部资源

*

ens:EventMigrateInstance EventMigrateInstance none

*全部资源

*

ens:AuthorizeSecurityGroup AuthorizeSecurityGroup update

*全部资源

*

ens:DescribeInstanceTypes DescribeInstanceTypes get

*全部资源

*

ens:RecoverAICInstance RecoverAICInstance update

*全部资源

*

ens:DescribeEpnInstances DescribeEpnInstances get

*全部资源

*

ens:StartInstance StartInstance update

*Instance

acs:ens:*:{#accountId}:instance/{#InstanceId}

ens:CreateHaVips CreateHaVip create

*全部资源

*

ens:CreateInstance CreateInstance create

*Instance

acs:ens:*:{#accountId}:instance/*

ens:DescribeInstanceBandwidthDetail DescribeInstanceBandwidthDetail list

*全部资源

*

ens:DescribeExportImageStatus DescribeExportImageStatus get

*全部资源

*

ens:DescribeAvailableResource DescribeAvailableResource get

*全部资源

*

ens:DescribeNatGateways DescribeNatGateways list

*全部资源

*

ens:UpgradeApplication UpgradeApplication update

*全部资源

*

ens:UpgradeClusterAddons UpgradeClusterAddons create

*全部资源

*

ens:DescribeVSwitchAttributes DescribeVSwitchAttributes get

*全部资源

*

ens:DeleteSecurityGroup DeleteSecurityGroup delete

*全部资源

*

ens:ReleaseAICInstance ReleaseAICInstance delete

*全部资源

*

ens:DescribeImageInfos DescribeImageInfos get

*全部资源

*

ens:DescribeClusterNodes DescribeClusterNodes list

*全部资源

*

ens:DescribeCreatePrePaidInstanceResult DescribeCreatePrePaidInstanceResult get

*全部资源

*

ens:UntagResources UntagResources update

*全部资源

*

ens:ListTagResources ListTagResources list

*全部资源

*

ens:CreateSecurityGroupPermissions CreateSecurityGroupPermissions create

*全部资源

*

ens:RevokeSecurityGroupEgress RevokeSecurityGroupEgress update

*全部资源

*

ens:ListAICPublicKeyDeliveries ListAICPublicKeyDeliveries none

*全部资源

*

ens:ResetDisk ResetDisk update

*全部资源

*

ens:DescribeLoadBalancerTCPListenerAttribute DescribeLoadBalancerTCPListenerAttribute get

*全部资源

*

ens:PrepareUpload PrepareUpload none

*全部资源

*

ens:ModifyImageAttribute ModifyImageAttribute update

*全部资源

*

ens:ModifyInstanceBootConfiguration ModifyInstanceBootConfiguration update

*全部资源

*

ens:UnassociateNetworkAcl UnassociateNetworkAcl update

*全部资源

*

ens:RenewInstance RenewInstance none

*全部资源

*

ens:RemoveVSwitchesFromEpnInstance RemoveVSwitchesFromEpnInstance update

*全部资源

*

ens:DeleteBucket DeleteBucket delete

*全部资源

*

ens:DescribeFileSystems DescribeFileSystems list

*全部资源

*

ens:DescribeClusterNodePools DescribeClusterNodePools list

*全部资源

*

ens:DeleteImage DeleteImage delete

*全部资源

*

ens:ModifyInstanceNetworkAttribute ModifyInstanceNetworkAttribute update

*全部资源

*

ens:DeleteStorageGateway DeleteStorageGateway delete

*全部资源

*

ens:AttachEnsInstances AttachEnsInstances update

*全部资源

*

ens:ListObjects ListObjects list

*全部资源

*

ens:DeleteSnatEntry DeleteSnatEntry delete

*全部资源

*

ens:DescribeDataPushResult DescribeDataPushResult get

*全部资源

*

ens:DescribeSDGDeploymentStatus DescribeSDGDeploymentStatus none

*全部资源

*

ens:ListApplications ListApplications get

*全部资源

*

ens:ReleasePrePaidInstance ReleasePrePaidInstance delete

*Instance

acs:ens:*:{#accountId}:instance/{#InstanceId}

ens:CreateEpnInstance CreateEpnInstance create

*全部资源

*

ens:DescribeARMServerInstances DescribeARMServerInstances list

*全部资源

*

ens:UnloadRegionSDG UnloadRegionSDG none

*全部资源

*

ens:DeleteAICPublicKey DeleteAICPublicKey none

*全部资源

*

ens:DescribeReservedResource DescribeReservedResource get

*全部资源

*

ens:UploadAICPublicKey UploadAICPublicKey create

*全部资源

*

ens:ModifyClusterAddon ModifyClusterAddon create

*全部资源

*

ens:AddSnatIpForSnatEntry AddSnatIpForSnatEntry

*全部资源

*

ens:ExportBillDetailData ExportBillDetailData get

*全部资源

*

ens:SetLoadBalancerStatus SetLoadBalancerStatus update

*全部资源

*

资源(Resource)

下表是边缘节点服务 ENS定义的资源,这些资源可以在 RAM 权限策略语句的Resource元素中使用,用来授予对该资源执行具体操作的权限。 其中,资源 ARN 是资源在阿里云上的唯一标识。具体说明如下:

  • {#}为变量标识,需要您替换为实际值。例如:{#ramcode}需要您替换为实际的云服务RAM代码。

  • *表示全部。例如:

    • {#resourceType}*时:表示全部资源。

    • {#regionId}*时:表示全部地域。

    • {#accountId}*时:表示全部阿里云账号。

资源类型

资源 ARN

Instance
  • acs:ens:*:{#accountId}:instance/{#InstanceId}
  • acs:ens:*:{#accountId}:instance/*
Disk
  • acs:ens::{#accountId}:disk/{#DiskId}
  • acs:ens::{#accountId}:disk/*
Image
  • acs:ens::{#accountId}:image/{#ImageId}
HaVip
  • acs:ens::{#accountId}:havip/{#HaVipId}
  • acs:ens::{#accountId}:havip/{#HaVipIds}
NatGatewaySnatEntry
  • acs:ens::{#accountId}:natgatewaysnatentry/{#SnatEntryId}
disk
  • acs:ens::{#accountId}:disk/{#DiskId}
NatGatewayForwardEntry
  • acs:ens::{#accountId}:natgatewayforwardentry/{#ForwardEntryId}

条件(Condition)

边缘节点服务 ENS未定义产品级别的条件关键字。如需查看适用于所有云产品的通用条件关键字,请参见通用条件关键字

相关操作

您可以创建自定义权限策略,并将权限策略授予 RAM 用户、RAM 用户组或 RAM 角色。具体操作如下: