身份认证与访问控制 云防火墙角色 云防火墙角色如下表: 角色名称 类型 作用范围 描述 CFW admin 系统默认角色 全局 全局策略,拥有所有读写权限 CFW viewer 系统默认角色 全局 只读策略,拥有只读权限 CFW admin 策略内容 { "Version": "1.0", "Statement": [ { "effect": "Allow", "action": [ "cfw:agent:download", "cfw:agent:query", "cfw:app:query", "cfw:app:reload", "cfw:blackWhitePolicy:add", "cfw:blackWhitePolicy:delete", "cfw:blackWhitePolicy:query", "cfw:blackWhitePolicy:update", "cfw:dpi:query", "cfw:firewall:add", "cfw:firewall:delete", "cfw:firewall:destroy", "cfw:firewall:query", "cfw:firewall:update", "cfw:flowLog:add", "cfw:flowLog:query", "cfw:heartBeat:query", "cfw:igw:query", "cfw:ipsRule:query", "cfw:ipsRule:update", "cfw:logSetting:query", "cfw:logSetting:add", "cfw:operationLog:query", "cfw:whiteList:add", "cfw:whiteList:delete", "cfw:whiteList:update", "cfw:whiteList:query", "cfw:systemSecPolicy:add", "cfw:systemSecPolicy:delete", "cfw:systemSecPolicy:query", "cfw:systemSecPolicy:update", "cfw:systemVrfBind:query", "cfw:systemVrfBind:update", "cfw:report:query", "cfw:report:download", "cfw:report:update", "cfw:report:", "cfw:alarm:query", "cfw:alarm:update", "cfw:notification:query", "cfw:notification:update", "cfw:logManager:query", "cfw:logManager:update", "cfw:logManager:download" ] } ] }