1 - Overview

Service Overview

IAM(Identity and Access Management) is a service that controls the range of access to services and resources by verifying the identity of users registered on the Samsung Cloud Platform and granting access permissions. Administrators can create and manage users, permission groups, policies, and role items in detail through IAM.

Users can create new users if they are the Root user or have been granted user registration authority by the Root user. Policies cannot be assigned directly to users; instead, users are added to user groups, and policies are attached to those groups, granting specific users permission to access or manage resources. In other words, the tasks a user can perform within an account depend on which user group they belong to and which policies are attached to that group.

Provided features

IAM provides the following features.

  • User Authentication: Provides multi-factor authentication (MFA; Multi-Factor Authentication) for Console and API access. Additionally, it blocks unauthorized access by allowing access only from permitted IP ranges.
  • Permission Management: Add users to user groups based on tasks, limiting their access permissions to the parts required for the work. Administrators can manage and assign custom policies.
  • Role Management: You can switch from your own account to another role to access the Account.
  • Credential Provider Offering: You can access and use the Account within the Console via the credential provider.
  • Access Control Policy Management: Create access control policies for each service regarding control/action/resource type and authentication method/IP. This enables the application of least‑privilege policies when granting access to cloud resources, allowing user‑based access control.

Component

Users can create and manage user groups, users, policies through Identity and Access Management(IAM).

User group

In the user group, you can register users and add policies. You can create user groups tailored to each task, register users, and attach appropriate policies to grant the same permissions to users and manage them.

User

Administrators can create users and add them to user groups. They can generate a user’s password automatically or manually, and provide the user with account-specific login information.

User Policy

You can create policies for the functions provided by each service. Access control can be managed based on control type, applied resources, and authentication type.

role

It is a virtual user account with separate permissions, not affected by the permissions of the original user account.

Preceding Service

Identity and Access Management(IAM) has no prerequisite service.

2 - How-to Guides

Users can create and manage User Groups, Users, Policies, My Info. through Identity and Access Management(IAM).

Getting Started with IAM

  1. Click the All Services > Management > IAM menu. Go to the Service Home page of IAM.
  2. On the Service Home page, My Info., Account information, Quick Link, and IAM status are provided as widgets.
    CategoryDetailed description
    My Info.User name, email, and user group information accessed in the Samsung Cloud Platform Console. Click the More button to go to the My Info page.
    Account informationProvides the user’s Account ID, Account alias, and IAM user login URL if the user is an IAM user
    • Account ID: User’s Account ID
    • Account alias: A name assigned to the Account. It allows you to attach an alias for easier identification and management of the Account
      • Edit: If you edit the Account alias, the IAM user login URL that uses the current alias will no longer be usable. See Edit Account Alias
      • Delete: If you delete the Account alias, IAM users will no longer be able to log in using the Account alias. See Delete Account Alias
    • IAM user login URL can be used to log in without entering Account information
    • For more details related to the Account, see Account see
    Quick LinkDescription of My Info. and My Info. button navigates to the page.
    • For more details about My Info., see My Info.
    IAM statusCounts of user groups, users, and policies
    Table. IAM Service Home widget items

Modify Account Alias

You can edit the Account alias in the Service Home > Account widget of IAM.

  1. Click the All Services > Management > IAM menu. Go to the Service Home page of IAM.
  2. On the Service Home page, in the Account widget, click the Edit button of the Account alias. You will be taken to the Edit Account Alias popup.
  3. Edit Account Alias After reviewing the instructions in the popup window, edit the Account alias and click the Confirm button.
    Reference
    When modifying an Account alias, the Console login URL that uses the current alias will no longer be usable.
    After making changes, if the alias is not used by another account, you can reuse the alias you were previously using.

Delete Account Alias

You can delete an Account alias from the IAM Service Home > Account widget.

  1. Click the All Services > Management > IAM menu. Navigate to the Service Home page of IAM.
  2. On the Service Home page, in the Account widget, click the Delete button of the Account alias. You will be taken to the Delete Account alias popup.
  3. Account Alias Deletion After reviewing the instructions in the popup window, click the Confirm button.
    Caution

    If you delete the account alias, IAM users can no longer log in using the account alias.

    • The IAM login URL is also unavailable.

2.1 - User Group

Users can create the service by entering the required information for a user group and selecting detailed options through the Samsung Cloud Platform Console.

Create user group

To create a user group, follow these steps.

  1. All Services > Management > IAM menu, click it. 1. Navigate to the Service Home page of Identity and Access Management (IAM).

  2. On the Service Home page, click the User Group menu. 2. Navigate to the User Group List page.

  3. On the User Group List page, click the Create User Group button. 3. Navigate to the Create User Group page.

    • Enter the required information in the Basic Information Entry, Add User, Policy Connection, and Additional Information Entry areas.
      Category
      Required status
      Detailed description
      User group nameRequiredEnter user group name
      • using Korean, English, numbers, and special characters (+=,.@-_) as a value of 3 to 24 characters
      ExplanationSelectDescription of the user group name
      • Detailed description of the user group name, up to 1,000 characters allowed
      UserSelectUser to add to the user group
      • The list of users registered in the Account is displayed, and when a checkbox is selected, the selected user’s name appears at the top of the screen
      • At the top of the screen, click the X button for each user, or uncheck the checkbox in the user list to cancel the selection of the selected user
      • If there are no users to add, you can click User Creation at the bottom of the user list to first register a new user
        • After user creation is complete, refresh the user list, and once the user appears, you can select the user
        • For detailed information on creating a user group, see Create User for reference
      policySelectPolicy to attach to the user group
      • The list of policies registered in the Account is displayed, and when a checkbox is selected, the name of the selected policy appears at the top of the screen
      • At the top of the screen, you can click the X button for each policy, or deselect the checkbox in the policy list to cancel the selection of a policy
      • If there is no policy to attach, you can click Create Policy at the bottom of the policy list to first register a new policy
        • After creating the policy, refresh the policy list; once the policy appears, you can select it
        • For detailed information on creating policies, see Create Policy for reference
      tagSelectTags to add to the user group
      • can be added up to a maximum of 50 per resource
      Table. User group creation information input fields
  4. Create button, click it.

  5. When the popup indicating creation opens, click the Confirm button. 5. Navigate to the User Group List page.

Check user group detailed information

In the user groups, you can view and edit the list of user groups and their detailed information. The User Group Detail page consists of Basic Information, Users, Policies, Tags tabs.

To view detailed information of the user group service, follow these steps.

  1. All Services > Management > IAM Click the menu. 1. Go to the Service Home page of Identity and Access Management(IAM).
  2. On the Service Home page, click the User Group menu. 2. Go to the User Group List page.
  3. User Group List page, click the user group name to view its details. 3. Go to the User Group Details page.
    • User Group Detail page displays basic information, and consists of Basic Information, Users, Policies, Tags tabs.

Basic Information

User Group List page allows you to view the basic information of the selected user group and, if necessary, edit the user group name and description.

CategoryDetailed description
serviceService Name
Resource TypeResource Type
SRNUnique resource ID in Samsung Cloud Platform
Resource nameResource name
  • In a user group, it refers to the user group name
Resource IDUnique Resource ID
ConstructorUser who created the service
Creation date and timeService creation date and time
ModifierUser who edited the service information
Modification date and timeDate and time the service information was modified
User group nameName of the user group
ExplanationDescription of the user group name
Table. User group basic information tab items

User

User Group List page lets you view the users included in the selected user group and, if needed, add or delete users.

Reference
For detailed information about User, please refer to User.
CategoryDetailed description
ExcludeExclude users from the user group
  • Activate when selecting a user from the user list
Add userAdd another user to the user group
  • When the button is clicked, navigate to the Add User page
UsernameUser’s name
User groupNumber of user groups the user belongs to
  • When the item is clicked, you can view the associated user group name and navigate to its detail page
Creation date and timeUser creation timestamp
Table. User Group Details – User Tab Items

Policy

User Group List page allows you to view the policy attachment information of the selected user group, and, if necessary, modify the policy attachment information for the user group.

Reference
For detailed information about Policy, refer to Policy.
CategoryDetailed description
DisconnectDisconnect the selected policy
  • Activates when a policy is selected from the policy list
Policy connectionConnect a new policy to the user group
  • When the button is clicked, navigate to the Policy Connection page
Policy namePolicy name
Policy TypeType of attached policy
  • Default: Default policy provided by Samsung Cloud Platform
  • Custom: Policy created directly by the user
ExplanationExplanation of the policy
Creation date and timePolicy creation timestamp
Modification date and timePolicy modification date and time
Table. User Group Details – Policy Tab Items

Tag

User Group List page allows you to view the tag information of the selected user group, and add, modify, or delete it.

CategoryDetailed description
Tag listTag list
  • You can view the Key and Value information of the tag
  • Up to 50 tags can be added per resource
  • When entering a tag, you can search and select from the list of previously created Keys and Values
Table. User group tag tab items

Manage user groups

You can rename a user group, add users, attach policies, or modify tags. If you need to manage user groups, you can perform tasks on the User Group List or User Group Details page.

Edit Basic Information

You can edit the name and description of a user group. To modify the name and description of a user group, follow the steps below.

  1. Click the All Services > Management > IAM menu. 1. Navigate to the Service Home page of Identity and Access Management (IAM).
  2. On the Service Home page, click the User Group menu. 2. Go to the User Group List page.
  3. On the User Group List page, click the user group name whose basic information you want to edit. 3. Navigate to the User Group Details page.
  4. After confirming the basic information to be edited on the User Group Details page, click the Edit button.
    • User Group Name: You can change the user group name. * Edit button click opens the Edit User Group Name popup.
    • Description: You can edit the description of a user group. * Edit button click opens the Edit Description popup window.
  5. After editing the content to be changed in the popup window, click the Confirm button.

Manage Users

You can add or remove users from a user group.

Add User

To add a user to a user group, follow the steps below.

  1. Click the All Services > Management > IAM menu. 1. Go to the Service Home page of Identity and Access Management (IAM).

  2. On the Service Home page, click the User Group menu. 2. Go to the User Group List page.

  3. User Group List page, click the user group name to which you want to add a user. 3. Navigate to the User Group Details page.

  4. On the User Group Details page, click the User tab. 4. Go to the User tab.

  5. In the User tab, click the Add User button. 5. Go to the Add User page.

  6. On the Add User page, select the user you want to add from the User list, then click the Complete button. 6. A popup window notifying the addition of a user opens.

    CategoryDetailed description
    Added userDisplay users included in the user group
    UserSelect users to add to the user group from the list of users registered in the Account
    • When the checkbox is selected, the name of the selected user group is displayed at the top of the list
    • You can remove the added user by clicking the X button next to the user’s name at the top of the list, or by unchecking the checkbox in the user list
    • If the desired user is not present, you can click the Create User item at the bottom of the user list to register a new user first
      • After creating the user, refresh the user list and then you can select the newly created user
      • For detailed information on creating users, see Create User
    Table. User addition detailed items

  7. In the popup that notifies you of adding a user, click the Confirm button. 7. You can view the added user in the list of the User tab.

Exclude user

To exclude a user from a user group, follow these steps.

  1. Click the All Services > Management > IAM menu. 1. Navigate to the Service Home page of Identity and Access Management(IAM).
  2. On the Service Home page, click the User Group menu. 2. Navigate to the User Group List page.
  3. User Group List page, click the user group name to exclude the user. 3. Navigate to the User Group Details page.
  4. On the User Group Details page, click the User tab. 4. Go to the User tab.
  5. In the User tab, select the user to exclude from the displayed user list, then click the Exclude User button.
  6. The selected user is excluded and the user list is refreshed.

Manage Policies

You can attach a policy to a user group or detach an attached policy.

Connect Policy

To attach a policy to a user group, follow these steps.

  1. Click the All Services > Management > IAM menu. 1. Go to the Service Home page of Identity and Access Management(IAM).

  2. On the Service Home page, click the User Group menu. 2. Navigate to the User Group List page.

  3. User Group List page, click the user group name to which you want to attach the policy. 3. Navigate to the User Group Details page.

  4. On the User Group Details page, click the Policy tab. 4. Go to the Policy tab.

  5. In the Policy tab, click the Attach Policy button. 5. Navigate to the Policy Attachment page.

  6. After selecting the policy to attach to the user group, click the Complete button. 6. A popup window notifying the policy connection opens.

    CategoryDetailed description
    Linked policyDisplay policies directly attached to the user group
    policySelect a policy to attach to the user group from the list of policies registered in the Account
    • When you select the checkbox, the selected policy name is displayed at the top of the list
    • You can cancel the policy by clicking the X button of the added policy name at the top of the list, or by unchecking the checkbox in the policy list
    • If there is no policy to attach, you can first create a new policy by clicking the Create Policy item at the bottom of the policy list
      • After creating the policy, refresh the policy list and you can select the newly created policy
      • For detailed information on creating policies, see Create Policy reference
    Table. Policy Connection Details

  7. In the popup that notifies about policy linking, click the Confirm button. 7. You can view the attached policy in the list of the policy tab.

Disconnect policy

To detach the policies linked to a user group, follow these steps.

  1. All Services > Management > IAM Click the menu. 1. Navigate to the Service Home page of Identity and Access Management(IAM).
  2. On the Service Home page, click the User Group menu. 2. Go to the User Group List page.
  3. On the User Group List page, click the user group name to detach its policy connection. 3. Navigate to the User Group Details page.
  4. On the User Group Details page, click the Policy tab. 4. Go to the Policy tab.
  5. In the Policy tab, select the policy to disconnect from the displayed policy list, then click the Disconnect button.
  6. The selected policy is disconnected and the policy list is refreshed.

Manage Tags

You can edit the tags of a user group. To modify tags in a user group, follow these steps.

  1. All Services > Management > IAM Click the menu. 1. Navigate to the Service Home page of Identity and Access Management(IAM).
  2. On the Service Home page, click the User Group menu. 2. Go to the User Group List page.
  3. Click the user group name whose tag information you want to edit on the User Group List page. 3. Go to the User Group Details page.
  4. On the User Group Detail page, click the Tag tab. 4. Navigate to the Tag tab.
  5. In the Tag tab, click the Edit Tag button.
  6. After adding or editing tags, click the Save button. 6. A popup window notifying tag editing opens.
    • You can modify the Key and Value of an already registered tag.
    • You can click the Add Tag button to add a new tag.
    • Click the X button before the added tag to delete that tag.
  7. Click the Confirm button. 7. You can view the edited tag information in the list.

Delete user group

To delete a user group, follow the steps below.

  1. All Services > Management > IAM Click the menu. 1. Navigate to the Service Home page of Identity and Access Management(IAM).
  2. On the Service Home page, click the User Group menu. 2. Navigate to the User Group List page.
  3. User Group List page, click the user group name you want to delete. 3. Navigate to the User Group Details page.
  4. On the User Group Details page, click the Delete User Group button.
  5. The user group is deleted, and you are redirected to the User Group List page.

To delete multiple user groups simultaneously, follow these steps.

  1. All Services > Management > IAM Click the menu. 1. Navigate to the Service Home page of Identity and Access Management(IAM).
  2. On the Service Home page, click the User Group menu. 2. Go to the User Group List page.
  3. Check the user groups to delete from the user group list.
  4. Check the selected user groups, and click the Delete button.
  5. The selected user groups are deleted and the User Group List page is refreshed.

2.2 - User

Users can create the service by entering the required policy information and selecting detailed options through the Samsung Cloud Platform Console.

Create User

Follow the steps below to create a user.

  1. Click the All Services > Management > IAM menu. 1. Go to the Service Home page of Identity and Access Management (IAM).

  2. Service Home on the page, click the User menu. 2. Navigate to the User List page.

  3. On the User List page, click the Create User button. 3. Go to the User Creation page.

  4. On the User Creation page, after entering the required information in the Basic Information Input, Permission Settings, and Additional Information Input sections, click the Create button. 4. A popup window announcing user creation opens.

    Category
    Required
    Detailed description
    UsernameRequiredUsing the user’s name
    • English letters, numbers, and special characters (+=,.@-_), enter a value within 64 characters
    ExplanationSelectionDescription of the username
    • Enter a detailed description of the username, up to 1,000 characters
    PasswordRequiredThere are two ways to generate a password for user use.
    • Automatic generation: The password is generated automatically and can be viewed at the time of user creation
    • Direct input: The password is created manually
    Password change settingsSelectionPassword change setting at first user login
    • If not set, the user cannot change the password at first login, but can reset it via Password Reset
    Permission configuration methodRequired
    • Add to User Group: Select a user group from the list of user groups registered in the Account to include the user
  5. When the checkbox is selected, the selected user group name is displayed at the top of the list
      • Click the **X** button next to the added user group name at the top of the list, or uncheck the checkbox in the user group list to cancel that user group
      If there is no user group to connect, you can click the **Create User Group** item at the bottom of the user group list to register a new user group first
    • After creating a user group, refresh the user group list and then you can select the newly created user group
    For details on creating a user group, see [사용자 그룹 생성하기](/userguide/management/iam/how_to_guides/user_group.md#create)
      • **Copy Permissions**: Select a user to copy the policies attached to that user's user groups
      • **Select User**: Choose one user from the list to copy policies
        • **Permission Summary**: Displays the list of policies directly attached to the selected user or attached via user groups
    **Direct Policy Attachment**: Select a policy from the list of policies registered in the Account to attach directly to the user When the checkbox is selected, the selected policy name is displayed at the top of the list Click the **X** button next to the added policy name at the top of the list, or uncheck the checkbox in the policy list to cancel that policy If there is no policy to attach, you can click the **Create Policy** item at the bottom of the policy list to register a new policy first After creating a policy, refresh the policy list and you can select the newly created policy For details on creating a policy, see [정책 생성하기](/userguide/management/iam/how_to_guides/policy.md#create) | | tag | Selection | Tags to add to the user group
    • Tags can be added up to a maximum of 50 per resource
    |
    Table. User-generated information input items
    Password creation rules
    • If you enter the password incorrectly five or more times, you will be automatically logged out.
    • It must contain at least one each of uppercase letters (English), lowercase letters (English), digits, and special characters (! @ # $ % & * ^).
    • The length is 9 to 20 characters.
    • You cannot use the ID as a password.
    • You cannot use the same character more than three times.
    • Passwords that are easy to guess cannot be used.
    • Consecutive characters or numbers of four or more characters are not allowed.
    • The password change cycle is 90 days.

  • In the popup that notifies user creation, click the Create button. 5. IAM user login information The popup window opens.

  • After checking the IAM user login information, click the Confirm button. 6. Navigate to the User List page.

    CategoryDetailed description
    Account IDAccount ID value
    usernameGenerated user name
    PasswordGenerated user’s password
    • View icon can be clicked to check the password
    IAM user login URLIAM user’s login URL information
    Excel downloadDownload IAM user login information as an Excel file
    Email sendingSend an Excel file containing IAM user login information via email
    • After clicking the button, enter the address to receive the email
    Table. IAM user login information items

  • Check user detailed information

    In the user section, you can view and edit the user list and detailed information. User Details page consists of Basic Information, User Groups, Permissions, API Keys, Tags tabs.

    To view detailed information of the user service, follow the steps below.

    1. All Services > Management > IAM menu, click it. 1. Go to the Service Home page of Identity and Access Management (IAM).
    2. On the Service Home page, click the User menu. 2. User List page is opened.
    3. On the User List page, click the user name to view detailed information. 3. Navigate to the User Details page.
      • User Details page displays basic information and consists of Basic Information, Users, Permissions, API Keys, Tags tabs.
    Reference
    In the user list, clicking the authentication key count allows you to view the authentication key information and its current status (active, disabled).

    Basic Information

    User List page allows you to view the basic information of the selected user and, if needed, modify the user’s description and options.

    CategoryDetailed description
    ServiceService name
    Resource TypeResource Type
    SRNUnique resource ID in Samsung Cloud Platform
    Resource nameresource name
    • In the user context, it means the username
    Resource IDUnique Resource ID
    ConstructorUser who created the service
    Creation date and timeService creation date and time
    ModifierUser who edited the service information
    Modification date and timeDate and time the service information was modified
    usernameUser’s name
    Last loginThe date and time the user last logged in
    ExplanationDescription of the username
    PasswordThe date and time the password was last changed
    Password reuse restrictionPrevent reuse of recently used passwords
    • Edit icon can be clicked to change the number of password histories to restrict
    emailEmail verification status
    mobile phone numberMobile phone number verification status
    Table. User Details - Basic Information Tab Items

    User group

    User List page lets you check the user groups registered to the selected user, and, if necessary, add or remove user groups.

    Reference
    For detailed information about User Group, see the 사용자 그룹.
    CategoryDetailed description
    ExcludeExclude the user from the user group
    • Enabled when selecting a user group from the user group list
    Add user groupAdd the user to another user group
    • When the button is clicked, navigate to the Add User Group page
    User group nameName of the user group
    Linked policyNumber of policies linked to the user group
    • When the item is clicked, you can view the linked policy name and navigate to the corresponding policy details page
    ExplanationDescription of the user group
    Modification date and timeDate and time the user group was modified
    Table. User Details - User Group Tab Items

    Permission

    User List page allows you to view the selected user’s policy information, and you can add, modify, or delete it.

    CategoryDetailed description
    DisconnectDisconnect the selected policy
    • Activate when a policy is selected from the policy list
    MoreDirect connection can be removed or excluded from user groups
    • Direct connection removal: When the connection method is direct, remove the direct connection of the policy
    • Exclude from user group: Exclude a user from the user group
    Add permissionConnect the new policy to the user
    • When the button is clicked, navigate to the Add Permission page
    Policy NamePolicy name
    • Click the policy name to view the policy detail page
    typePolicy types
    ExplanationExplanation of the policy
    Connection methodPolicy connection method
    • Direct: User connects directly to the policy
    • Group: Connect to the policy through a group
    • Direct, Group: Both direct connection and group connection are applied
    • When selecting a group name, navigate to the group’s detail page
    Modification date and timeLast policy modification date and time
    Table. User Details – Permissions Tab Items

    Authentication key

    User List page allows you to view the authentication key information of the selected user.

    CategoryDetailed description
    Access KeyAuthentication key information
    Secret VaultWhether to use encryption
    Creation timestampAuthentication key creation time
    Expiration date and timeAuthentication key expiration time
    statusAuthentication key usage (use/disable)
    Table. User Details - Authentication Key Tab Items

    tag

    On the User List page, you can view the selected user’s tag information, and you can add, modify, or delete it.

    CategoryDetailed description
    Tag ListTag list
    • You can view the Key and Value information of the tag
    • Up to 50 tags can be added per resource
    • When entering a tag, you can search and select from the list of previously created Keys and Values
    Table. User Details - Tag Tab Items

    Manage Users

    You can change a user’s basic information, add user groups, or edit tags. If user management is required, you can perform tasks on the User List or User Details page.

    Edit basic information

    You can edit the user’s basic information.

    Caution
    Usernames cannot be edited.

    Edit description

    Follow these steps to edit the user’s description.

    1. Click the All Services > Management > IAM menu. 1. Go to the Service Home page of Identity and Access Management (IAM).
    2. Click the User menu on the Service Home page. 2. User List page is opened.
    3. On the User List page, click the user name whose description you want to edit. 3. User Details page will be opened.
    4. User Details page, view the description and click the Edit button. 4. Edit description The popup window opens.
    5. Edit Description After modifying the description in the popup window, click the Confirm button.

    Change Password

    To change a user’s password, follow these steps.

    1. All Services > Management > IAM menu, click it. 1. Go to the Service Home page of Identity and Access Management(IAM).
    2. On the Service Home page, click the User menu. 2. User List page.
    3. On the User List page, click the username whose password you want to edit. 3. Navigate to the User Details page.
    4. On the User Details page, click the Edit password button. 4. Password Reset The popup window opens.
    5. After changing the password, click the Confirm button. 5. IAM user login information The popup window opens.
      • Password has the following two settings.
        • Automatic Generation: A random password is generated.
        • Manual entry: It is generated with a password entered directly by the user. * It must contain at least one each of uppercase letters (English), lowercase letters (English), digits, and special characters (! @ # $ % & * ^). * Please refer to the password creation rules.
      • Password Change Setting: It is recommended to change the password upon first login after resetting the password.
    Password creation rules
    • It must contain at least one uppercase letter (English), one lowercase letter (English), one digit, and one special character (! @ # $ % & * ^).
    • The length is 9 to 20 characters.
    • You cannot use the ID as a password.
    • You cannot use the same character more than three times.
    • You cannot use passwords that are easy to guess.
    • You cannot use a password that was recently used.
    • Consecutive characters or numbers of four or more characters are not allowed.
    • The password change interval is 90 days.
    1. After checking the user-generated information, click the Confirm button. 6. Password change has been completed.
      CategoryDetailed description
      Account IDAccount ID value
      usernameGenerated user name
      PasswordGenerated user’s password
      • View icon can be clicked to check the password
      IAM user login URLIAM user’s login URL information
      Excel downloadDownload IAM user login information as an Excel file
      Email sendingSend an Excel file containing IAM user login information via email
      • After clicking the button, enter the address to receive the email
      Table. IAM user login information items

    Restrict password reuse

    Specify the number of password history entries to check so that recently used passwords cannot be reused. To restrict users from reusing passwords, follow the steps below.

    1. All Services > Management > IAM Click the menu. 1. Go to the Service Home page of Identity and Access Management (IAM).
    2. Click the User menu on the Service Home page. 2. Navigate to the User List page.
    3. User List page, click the username to modify the password reuse restriction. 3. Navigate to the User Details page.
    4. On the User Details page, click the Edit button for the secret password reuse restriction. 4. Password reuse restriction edit The popup window opens.
      • Password reuse restriction: Select the number of recent password history entries as a number between 1 and 24.
    5. Click the Confirm button. 5. Password reuse restriction count has been changed.

    User Group Management

    You can add a user to a user group or remove a user from a user group.

    Add user group

    To add a user to a user group, follow the steps below.

    1. All Services > Management > IAM click the menu. 1. Go to the Service Home page of Identity and Access Management (IAM).

    2. Click the User menu on the Service Home page. 2. Go to the User List page.

    3. On the User List page, click the user name to add to the user group. 3. Navigate to the User Details page.

    4. On the User Details page, click the User Group tab. 4. Go to the User Group tab.

    5. In the User Group tab, click the Add User Group button. 5. Navigate to the Add User Group page.

    6. On the Add User Group page, select the user group you want to add from the User Group list, then click the Done button. 6. A popup window announcing the addition of a user group opens.

      CategoryDetailed description
      Added user groupDisplay user groups that contain the user
      Add to user groupSelect the user group to which you want to add a user from the list of user groups registered in the Account
      • When you select the checkbox, the name of the selected user group is displayed at the top of the list
      • You can remove the user group by clicking the X button next to the added user group name at the top of the list, or by unchecking the checkbox in the user group list
      • If the desired user group is not present, you can click the Create User Group item at the bottom of the user group list to register a new user group first
        • After creating the user group, refresh the user group list and then you can select the newly created user group
      Table. User Group Add Detailed Items

    7. In the popup that notifies you of adding a user group, click the Confirm button. 7. You can view the added user group in the list of the User Group tab.

    Exclude user group

    To remove a user from a user group, follow these steps.

    1. Click the All Services > Management > IAM menu. 1. Go to the Service Home page of Identity and Access Management(IAM).
    2. Click the User menu on the Service Home page. 2. Navigate to the User List page.
    3. On the User List page, click the username to exclude from the user group. 3. Navigate to the User Details page.
    4. On the User Details page, click the User Group tab. 4. Navigate to the User Group tab.
    5. In the User Group tab, select the user group to exclude from the displayed list of user groups, then click the Exclude User Group button.
    6. The selected user group is excluded and the user group list is refreshed.

    Manage Permissions

    You can attach a policy or detach an attached policy to configure user permissions.

    Add Permission

    You can include users in a user group to attach a policy, or attach a policy directly to the user.

    To add permissions to a user, follow the steps below.

    1. All Services > Management > IAM Click the menu. 1. Go to the Service Home page of Identity and Access Management (IAM).

    2. On the Service Home page, click the User menu. 2. Navigate to the User List page.

    3. On the User List page, click the username to which you want to add permissions. 3. Navigate to the User Details page.

    4. On the User Details page, click the Permissions tab. 4. Go to the Permissions tab.

    5. Click the Add Permission button on the Permission tab. 5. Go to the Add Permission page.

    6. After selecting the method to add permissions, enter the required information.

      Category
      Required status
      Detailed description
      Permission addition methodRequired
      • Add to user group: Select a user group from the list of user groups registered in the Account to include the user
    7. When you select the checkbox, the selected user group name is displayed at the top of the list
        • You can cancel the user group by clicking the **X** button of the added user group name at the top of the list, or by unchecking the checkbox in the user group list
        If there is no user group to connect, you can first register a new user group by clicking the **Create User Group** item at the bottom of the user group list
      • After creating the user group, refresh the user group list and you can select the newly created user group
      For detailed information on creating user groups, see [사용자 그룹 생성하기](/userguide/management/iam/how_to_guides/user_group.md#create)
        • **Copy permissions**: Select a user to copy the policies attached to that user's user groups
        • **User selection**: Choose one user from the list to copy policies
          **Permission summary**: Displays the list of policies directly attached to the selected user or attached via user groups in the user selection list
        **Direct policy attachment**: Select a policy from the list of policies registered in the Account to attach directly to the user
      When you select the checkbox, the selected policy name is displayed at the top of the list You can cancel the policy by clicking the **X** button of the added policy name at the top of the list, or by unchecking the checkbox in the policy list If there is no policy to connect, you can first register a new policy by clicking the **Create Policy** item at the bottom of the policy list After creating the policy, refresh the policy list and you can select the newly created policy For detailed information on creating policies, see [정책 생성하기](/userguide/management/iam/how_to_guides/policy.md#create) |
      Table. Permission addition detailed items