IAM Overview (Identity and Access Management)
IAM (Identity and Access Management) is the set of features for managing users, groups, roles, and permissions within your FPT Cloud organization. IAM lets you control who can access which resources and with what level of permission.
IAM Components
| Component | Description |
|---|---|
| Users | Manage the list of users in your organization. Invite new members or remove existing accounts. |
| User Groups | Group users together for centralized permission assignment. Members are selected at group creation time and cannot be changed afterwards. |
| Roles | Named collections of permissions. The system provides built-in ORG Super Admin and VPC Super Admin roles; you can also create custom roles. |
| Permission Templates | Reusable permission templates. The system provides several built-in templates; you can create additional custom templates. |
| IP Access | Whitelist of IP addresses allowed to access the FPT Cloud console. This feature must be enabled for your organization by an FPT Cloud System Admin before it can be used. |
| Policies | Access control policies for resources at the VPC level. This feature must be enabled for your organization by an FPT Cloud System Admin before it can be used. |
Scope
Most IAM features operate at the organization (tenant) level — independent of any specific VPC type. Exceptions:
- Policies: bound to a specific VPC at creation time.
- Activity Log: operates at the VPC level (see the Activity Log section).
Navigating to IAM
From the left navigation bar, select IAM. The sub-items (Users, User Groups, Roles, Permission Templates, IP Access, Policies) appear in the IAM menu.
Note: If the IP Access or Policies menu does not appear in the interface, that feature has not yet been enabled for your organization. Contact the FPT Cloud team for assistance.