How to give IAM Members access to the Dedibox console
Before you start
To complete the actions presented below, you must have:
- A Dedibox account logged into the console
- Your Dedibox and Scaleway account are unified
- Dedibox resources are available in your organization.
This page explains how to grant IAM members access to the Dedibox Console using Scaleway Identity & Access Management (IAM).
Concepts
Access to Dedibox resources is controlled through IAM:
- Users: IAM identities that represent a person or machine.
- Groups: Collections of users. Permissions can be assigned at the group level.
- Policies: Rules that define what actions a user or group can perform.
To allow an IAM member to access the Dedibox console, you must attach a policy to the user or the group they belong to.
Giving access to the Dedibox console for Scaleway IAM Members
Create or select an IAM user
If the user does not exist:
- In the Scaleway console, click IAM in the Management & Governance section of the side menu. The information dashboard appears.
- Click + Create member.
- Enter the user information and validate.
If the user already exists, proceed to the next section.
Create or assign a policy
To give the user access to Dedibox, attach an IAM policy with Dedibox permissions. Policies can be created and attached directly to a user or a group.
Create a policy
- In the IAM section, click the Policies tab.
- Click + Create Policy.
- Enter a policy name and description. Optionally, add key-value tags and select a principal.
- Click Add rules. The rule creation wizard appears.
- Define the scope of the rule — either at the Project or Organization level — then click Validate.
- Add a permission set to the rule:
- Click Bare Metal in the products list.
- Select
DediboxConsoleFullAccess.
- Click Validate to confirm.
- Optionally, add a condition using CEL (Common Expression Language).
- Click Validate to confirm, then click Create policy.
Attach the policy
You can attach the policy to:
- A group, or
- A user directly.
Attach to a group
- In the IAM section, select Groups.
- Open the desired group.
- Select the Policies tab.
- Click Attach Policy, then choose:
- Select an unassigned policy to assign the policy exclusively to the group, or
- Duplicate an existing policy to create a copy for the group.
- Select your previously created policy from the drop-down list and click Validate.
- Ensure the user is a member of this group.
Attach to a user
- In the IAM section, select Users.
- Click the user you want to attach the policy to.
- Click the Groups & Policies tab.
- Scroll to the Policies section and click Attach Policy, then choose:
- Select an unassigned policy to assign the policy exclusively to the user, or
- Duplicate an existing policy to create a copy for the user.
- Select your previously created policy from the drop-down list and click Validate.
Verify access
The user can now access the Dedibox console.
- Log in as the user (or ask them to log in).
- Open the Dedibox console: https://console.online.net/
If permissions are correctly configured, the Dedibox resources will be visible.
See Also
Still need help?Create a support ticket