FAQs about assigning roles

Last updated:2021-05-11 10:41:40

When you activate the Kingsoft Cloud Container Engine (KCE) service, you must assign the default role KsyunKCEDefaultRole to KCE, so that KCE can access related services, such as Server Load Balancing (SLB), Elastic IP (EIP), and Elastic Block Storage (EBS). This ensures normal operation of the KCE service.

The KCE service may become unavailable if you modify the information of the default role due to misoperations. KCE verifies the assigned role and related policy, and displays the following error messages if the verification fails:

The role information is incorrect.

This message indicates that the information of the default role is incorrect. To troubleshoot this error, perform the following steps:

  1. Log in to the Identity and Access Management (IAM) console. In the left navigation pane, click Roles. On the Roles page, click KsyunKCEDefaultRole. On the Role carrier tab, check whether the role carrier is kce Service.
  2. If not, delete this role in the IAM console and assign the role to KCE again in the KCE console.

The associated authorization policy is incorrect.

This message indicates that an error occurs in the policy associated with the default role. To troubleshoot this error, perform the following steps:

  1. Log in to the IAM console. In the left navigation pane, click Roles. On the Roles page, click KsyunKCEDefaultRole. On the page that appears, click the Permissions tab.
  2. On the Permissions tab, check whether the KsyunKCEDefaultRolePolicy policy is configured. If not, delete the role in the IAM console and assign the role to KCE again in the KCE console.

Did you find the above information helpful?

Unhelpful
Mostly Unhelpful
A little helpful
Helpful
Very helpful

What might be the problems?

Insufficient
Outdated
Unclear or awkward
Redundant or clumsy
Lack of context for the complex system or functionality

More suggestions

0/200

Please give us your feedback.

Submitted

Thank you for your feedback.

问题反馈