Each region is associated with a default project, which is pre-configured by the system to isolate resources (compute, storage, and network resources) across different physical regions. When authorizing access at the regional default project level, IAM users gain access to all resources within that region in your account.
Granting User Group Permissions for a Project
You can assign permissions based on projects to control access to resources in specific projects.
Step 1: In the user group list, click Accredit next to the target user group to access the authorization page.
Step 2: On the Accredit page, select the region-level project permissions to be granted to the user group, then click Next.
Step 3: Define the permission scope. If Resource Pool is selected, you must also specify the target project(s) for authorization.
Step 4: Click Confirm to complete the authorization process.
Description:
For more details about user group authorization, see Creating a User Group and Granting Permissions.
Switching Project or Region
After logging in, you must first switch the region or project to access and use the authorized cloud services; otherwise, the system will prompt that you have no permissions. The global region services do not require switching.
Step 1: Log in to the console.
Step 2: Navigate to the specific cloud service page. If the cloud service is project-specific, click the region drop-down box at the top of the page to switch regions.