With EL storage, we offer you unbeatably affordable S3-compatible cloud storage based on Wasabi Hot Cloud Storage technology. In our help desk articles, we show you how to manage EL storage via the Wasabi console.
To restrict access for individual users or groups, the Wasabi Hot Cloud Storage web portal provides what are known as policies.
You can find the policies in the web portal under the “Policies” menu item.
A policy consists of the following components:
- Name – This is the name of the policy
- Number of users/groups assigned – The number of users or groups to which this policy has been assigned
- ARN – Amazon Resource Name is the unique identifier used by Amazon Web Services for this policy
- Created On – Specifies the creation date of the policy
The functions of the individual policies are explained below:
- AmazonS3Full Access – Grants a user or group full access to all S3 resources (buckets), but not to the identity and access settings.
- AmazonS3ReadOnlyAccess - Grants a user or group the right to retrieve information from S3 resources using the Get and List commands, but does not grant access to identity and access settings.
- AdministratorAccess – Grants a user or group unlimited access to all resources (S3 and IAM*).
- WasabiReadOnlyAccess – Grants a user or group the right to retrieve information from S3 resources using GET and LIST commands, as well as the ability to log in to the web portal. No access to identity and access settings.
- WasabiWriteOnlyAccess - Grants a user or group the right to write to and delete all S3 resources, but no access to identity and access settings or the web portal login.
- WasabiFullAccess - Grants a user or group unrestricted access to all S3 resources, as well as the ability to log in to the web portal.
- WasabiAdministratorAccess - Grants a user or group unlimited access to all resources (S3 and IAM*), identical to AdministratorAccess.
- IAMUserChangePassword - Grants a user or group the right to change their own password after their initial login to the web portal.
- WasabiViewBillingAccess - Grants a user or group the right to access and view invoices.
- WasabiModifyBillingAccess - Grants a user or group the right to update or change billing options.
* IAM stands for Identity and Access Management