# 阿里云

## 服务开启：

1、注意检查云监控和MNS，需提前启用这两个服务，否则无法创建max\_group所使用的依赖环境。（如已启用请忽略）

![](https://3891039810-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-Lo-4MFDo1AwQyA0ZUax%2F-M5v-KnZAjX8c2_n2heE%2F-M5v-X6UIn92NATJaAc8%2Fimage.png?alt=media\&token=21709273-9841-4f32-92c1-b271938ef97e)

2、确保云监控授权给mns

![](https://3891039810-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-Lo-4MFDo1AwQyA0ZUax%2F-M5uz85T0xr53UspTzMA%2F-M5uzwKNVeAtbXtUpq6-%2Fimage.png?alt=media\&token=24a1130c-4976-4414-a200-cd566ef02f60)

## 授权

### 方法一：RAM角色授权

#### **1、推荐使用，创建RAM角色**

![](https://3891039810-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-Lo-4MFDo1AwQyA0ZUax%2F-M5uwb-OSyxASORl8Qx-%2F-M5ux5JNECTu-9WCcOEb%2Fimage.png?alt=media\&token=38958756-270c-469f-ad95-dd71c4bc00e9)

![](https://3891039810-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-Lo-4MFDo1AwQyA0ZUax%2F-M5uwb-OSyxASORl8Qx-%2F-M5uxJGTEPA_wf-0u6jj%2Fimage.png?alt=media\&token=978383ec-3c79-43bc-baf8-b006cec16bce)

![](https://3891039810-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-Lo-4MFDo1AwQyA0ZUax%2F-M5uwb-OSyxASORl8Qx-%2F-M5uxRng2SmYirBotOqz%2Fimage.png?alt=media\&token=9cf1c0a8-6c04-4fdd-989a-61410c9f5c6e)

点击 完成，用户创建成功，如下内容：

![](https://3891039810-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-Lo-4MFDo1AwQyA0ZUax%2F-M5uyGDYx75WCS0BSjvj%2F-M5uyVCYO4ZkDIKM6qbP%2Fimage.png?alt=media\&token=45cde63d-2810-4264-a201-5b1547d4b168)

#### 2、点击权限管理，授权策略如下：

[AliyunECSFullAccess](https://ram.console.aliyun.com/policies/AliyunECSFullAccess/System)

[AliyunMNSFullAcces](https://ram.console.aliyun.com/policies/AliyunMNSFullAccess/System)

[AliyunCloudMonitorFullAccess](https://ram.console.aliyun.com/policies/AliyunCloudMonitorFullAccess/System)

[AliyunESSFullAccess](https://ram.console.aliyun.com/policies/AliyunESSFullAccess/System)

[AliyunRAMFullAccess](https://ram.console.aliyun.com/policies/AliyunRAMFullAccess/System)

![](https://3891039810-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-Lo-4MFDo1AwQyA0ZUax%2F-M7GBwOjjNMJUyetv9sL%2F-M7GC33-mx_w5pUS-s1r%2Fimage.png?alt=media\&token=db1550e4-df75-4f09-a1e8-401b62f44d8a)

创建实例时，选择创建好的RAM角色

![](https://3891039810-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-Lo-4MFDo1AwQyA0ZUax%2F-M5v2cV7VNOpnRCmLk3D%2F-M5v3JYYuUvolZl-gt93%2Fimage.png?alt=media\&token=4c6fbe88-f97e-4e54-9929-4c3186a36e2c)

### 方法二：RAM用户授权，需要AK

#### 1、使用RAM用户对ecs进行授权， 授权策略如下：

[AliyunECSFullAccess](https://ram.console.aliyun.com/policies/AliyunECSFullAccess/System)

[AliyunMNSFullAcces](https://ram.console.aliyun.com/policies/AliyunMNSFullAccess/System)

[AliyunCloudMonitorFullAccess](https://ram.console.aliyun.com/policies/AliyunCloudMonitorFullAccess/System)

[AliyunESSFullAccess](https://ram.console.aliyun.com/policies/AliyunESSFullAccess/System)

![](https://3891039810-files.gitbook.io/~/files/v0/b/gitbook-legacy-files/o/assets%2F-Lo-4MFDo1AwQyA0ZUax%2F-M4vzhvXelKIWc4w1QI0%2F-M4wa3fWdloEZOu42--G%2Fimage.png?alt=media\&token=b90a0360-ccaf-4f0e-ad22-9d4b2ea25c67)

完成用户授权后，需要在系统中指定accessId和accessKeySecret。

```
echo 'export ALI_ACCESS_KEY_ID="accessId"' >> /etc/profile
echo 'export ALI_ACCESS_SECRET="accessKeySecret"' >> /etc/profile
source /etc/profile
```
