View resource information for Sub Account. When you perform actions in Sub Account, the system automatically maps them to resource types and actions defined in Resource Manager. Cloud Activity Tracer uses this information to collect user activity history, which administrators can use to monitor user activities and create audit reports. The resource types also determine user permissions in Sub Account.
Here are the resources and actions by resource types:
- Resources
- The main elements you work with in each service.
- Items you can create, modify, and delete.
- Service-specific components with unique properties.
- Actions by resource types.
- Activity history from the console and APIs.
- Operations like creating, modifying, or deleting resources.
Here are the resources types and actions available in Sub Account:
| Service name (product code) | Resource type | Action by resource type |
|---|---|---|
| Sub Account(IAM) | Group | Add sub account to group |
| Attach Tag To Resources | ||
| Attach policy to group | ||
| Create group | ||
| Delete group | ||
| Delete sub account from group | ||
| Detach Tag From Resources | ||
| Detach policy from group | ||
| Replace policy to group | ||
| Update group | ||
| MFA | Delete MFA | |
| Register MFA | ||
| Update MFA | ||
| Policy | Attach Tag To Resources | |
| Create policy | ||
| Delete policy | ||
| Detach Tag From Resources | ||
| Update policy | ||
| Role | Attach Entities To Role | |
| Attach Policies To Role | ||
| Attach Role To Entities | ||
| Attach Tag To Resources | ||
| Create Role | ||
| Create STS credentials | ||
| Delete Role | ||
| Detach Entities From Role | ||
| Detach Policies From Role | ||
| Detach Role From Entities | ||
| Detach Tag From Resources | ||
| Replace Policies To Role | ||
| Suspend Role | ||
| Switch To Role | ||
| Switch to Role with SSO | ||
| Unsuspend Role | ||
| Update Role | ||
| SubAccount | Add sub account to group | |
| Attach Tag To Resources | ||
| Attach policy to sub account | ||
| Change password | ||
| Create STS credentials | ||
| Create access key | ||
| Create sub account | ||
| Delete sub account from group | ||
| Detach Tag From Resources | ||
| Detach policy from sub account | ||
| Disable access key | ||
| Enable access key | ||
| Expire STS Credentials | ||
| Login | ||
| Remove api key | ||
| Remove sub account | ||
| Replace policy to sub account | ||
| Reset secondary authentication | ||
| Suspend sub account | ||
| Unsuspend sub account | ||
| Update accessKey access control rules | ||
| Update console access control rules | ||
| Update sub account | ||
| Tenant | Delete login url | |
| Update login url | ||
| Update password expiration settings | ||
| Update session expiration settings | ||
| updateLongtermUnusedDeactiveSettings |
Note
- Resource Manager is free and helps you manage resources across NAVER Cloud Platform. Learn more in the Resource Manager user guide.
- Cloud Activity Tracer is free and tracks user actions across your account. Learn more in the Cloud Activity Tracer user guide.
- Sub Account is free and lets you manage permissions based on the resource types defined in Resource Manager. Note that Sub Account groups resource types and actions differently than Resource Manager.