Skip to main content
Permissions

Overview

Alibaba Cloud Bailian's permission management supports multi-dimensional access control at both the console page level and model level, meeting the complex organizational architecture requirements of multi-region and multi-user environments.

Alibaba Cloud Bailian Identity Management

A single business space is the smallest unit for fine-grained permission management (for models and users) and Alibaba Cloud billing allocation. Bailian’s business space permission management is based on three roles:
  1. Super Administrator: Can manage user permissions, available models per space, model rate limiting per space, and API keys across spaces.
  2. Business Space Administrator: Responsible only for user permissions and resource management within a specific business space.
  3. Regular User: Uses resources according to assigned permissions.
Business Space PermissionSuper AdministratorBusiness Space AdministratorRegular User
Enable specific model invocation & rate limitingSupportedNot supportedNot supported
Manage user permissions within the spaceSupportedSupportedNot supported
Manage API keysSupportedSupportedLimited
Use resourcesSupportedSupportedSupported
For the detailed permission matrix and configuration steps, refer to the Permission Management page in the Alibaba Cloud Bailian console. For RAM user permission policy configuration, see the Alibaba Cloud RAM console documentation.