| Product |
Abbreviation in CAM |
Console |
Authorization by Tag |
Authorization Granularity |
IP Restriction |
| Text Moderation System |
tms |
Supported |
not supported |
Operation level |
Partially supported |
Note:
The authorization granularity of cloud products is divided into three levels: service level, operation level, and resource level, based on the degree of granularity.
- Service level: It defines whether a user has the permission to access the service as a whole. A user can have either full access or no access to the service. For the authorization granularity of cloud products at service level, the authorization of specific APIs are not supported.
- Operation level: It defines whether a user has the permission to call a specific API of the service. For example, granting an account read-only access to the CVM service is an authorization at the operation level.
- Resource level: It is the finest authorization granularity which defines whether a user has the permission to access specific resources. For example, granting an account read/write access to a specific CVM instance is an authorization at the resource level.
API authorization granularity
Two authorization granularity levels of API are supported: resource level, and operation level.
- Resource level: It supports the authorization of a specific resource.
- Operation level: It does not support the authorization of a specific resource. If the policy syntax restricts a specific resource during authorization, CAM will determine that this API is not within the scope of authorization, and deem it as unauthorized.
Write operations
| API |
API Description |
Authorization Granularity |
Six-segment Resource Description |
IP Restriction |
| AnswerQuestion |
AIGC Question Answering |
Operation level |
* |
Supported |
| CreateCosProvisionalToken |
CreateCosProvisionalToken |
Operation level |
* |
Supported |
| CreateDefaultServiceTemplate |
CreateDefaultServiceTemplate |
Operation level |
* |
Supported |
| CreateServiceTemplate |
CreateServiceTemplate |
Operation level |
* |
Supported |
| CreateStandardResourcePost |
CreateStandardResourcePost |
Operation level |
* |
Supported |
| CreateStrategy |
CreateStrategy |
Operation level |
* |
Supported |
| CreateTextLib |
CreateTextLib |
Operation level |
* |
Supported |
| CreateTextRecognitionIM |
CreateTextRecognitionIM |
Operation level |
* |
Supported |
| CreateTextSample |
CreateTextSample |
Operation level |
* |
Supported |
| CreateTrialResource |
CreateTrialResource |
Operation level |
* |
Supported |
| DeleteServiceTemplate |
DeleteServiceTemplate |
Operation level |
* |
Supported |
| DeleteStrategy |
DeleteStrategy |
Operation level |
* |
Supported |
| DeleteTextLib |
DeleteTextLib |
Operation level |
* |
Supported |
| DeleteTextSample |
DeleteTextSample |
Operation level |
* |
Supported |
| ExperienceService |
ExperienceService |
Operation level |
* |
Supported |
| ExperienceServiceAsync |
ExperienceServiceAsync |
Operation level |
* |
Supported |
| ModerateText |
Customized Moderate Text |
Operation level |
* |
Supported |
| ModifyUserInterfaceConf |
ModifyUserInterfaceConf |
Operation level |
* |
Supported |
| TextModeration |
TextModeration |
Operation level |
* |
Supported |
| TextRecognition |
TextRecognition |
Operation level |
* |
Supported |
| UpdateServiceTemplate |
UpdateServiceTemplate |
Operation level |
* |
Supported |
| UpdateStrategy |
UpdateStrategy |
Operation level |
* |
Supported |
| UpdateTextLib |
UpdateTextLib |
Operation level |
* |
Supported |
| UpdateTextSample |
UpdateTextSample |
Operation level |
* |
Supported |
Read operations
| API |
API Description |
Authorization Granularity |
Six-segment Resource Description |
IP Restriction |
| CreateFinancialLLMTask |
Create Financial LLM Content Detection Task |
Operation level |
* |
Supported |
| DescribeBatchTmsList |
DescribeBatchTmsList |
Operation level |
* |
Supported |
| DescribeBizCategory |
DescribeBizCategory |
Operation level |
* |
Supported |
| DescribeCheckResult |
DescribeCheckResult |
Operation level |
* |
Supported |
| DescribeContentModerationPackage |
DescribeContentModerationPackage |
Operation level |
* |
Supported |
| DescribeDefaultStrategy |
DescribeDefaultStrategy |
Operation level |
* |
Supported |
| DescribeGroupTag |
DescribeGroupTag |
Operation level |
* |
Supported |
| DescribeLevelTag |
DescribeLevelTag |
Operation level |
* |
Supported |
| DescribeListBizCategory |
DescribeListBizCategory |
Operation level |
* |
Supported |
| DescribeListServiceTemplate |
DescribeListServiceTemplate |
Operation level |
* |
Supported |
| DescribeListStrategies |
DescribeListStrategies |
Operation level |
* |
Supported |
| DescribeManualModerationList |
DescribeManualModerationList |
Operation level |
* |
not supported |
| DescribeServiceTemplate |
DescribeServiceTemplate |
Operation level |
* |
Supported |
| DescribeSimilarTexts |
DescribeSimilarTexts |
Operation level |
* |
Supported |
| DescribeStaticStat |
DescribeStaticStat |
Operation level |
* |
Supported |
| DescribeStrategy |
DescribeStrategy |
Operation level |
* |
Supported |
| DescribeSubscriptionIsOpen |
DescribeSubscriptionIsOpen |
Operation level |
* |
Supported |
| DescribeTextSample |
DescribeTextSample |
Operation level |
* |
Supported |
| DescribeTmsList |
DescribeTmsList |
Operation level |
* |
Supported |
| DescribeUserInterfaceConf |
get user interface configure |
Operation level |
* |
Supported |
| GetFinancialLLMTaskResult |
Get Financial LLM Content Detection Task Result |
Operation level |
* |
Supported |
| GetLLMContentDetectionCosPreSignedURLs |
Get LLM Content Detection COS Pre-Signed URLs |
Operation level |
* |
Supported |
| SearchAnswer |
AIGC Search Answer |
Operation level |
* |
Supported |
| SearchAnswerV2 |
AIGC Search Answer |
Operation level |
* |
not supported |
| SearchCommon |
AIGC Common Search |
Operation level |
* |
Supported |
| SearchCommonProBeta |
AIGC Retrieval Augmentation (Beta) |
Operation level |
* |
Supported |
| SearchPro |
AIGC Retrieval Augmentation 2.0 |
Operation level |
* |
Supported |
Other Operations
| API |
API Description |
Authorization Granularity |
Six-segment Resource Description |
IP Restriction |
| DesensitizeText |
data desensitization |
Operation level |
* |
Supported |