2026-02-06 03:34:50 +08:00
|
|
|
|
<template>
|
|
|
|
|
|
<div class="cross-account-access-demo">
|
|
|
|
|
|
<div class="demo-header">
|
2026-02-14 12:14:07 +08:00
|
|
|
|
<span class="icon">🔗</span>
|
|
|
|
|
|
<span class="title">跨账号访问</span>
|
2026-02-14 20:23:34 +08:00
|
|
|
|
<span class="subtitle">AssumeRole 机制</span>
|
2026-02-06 03:34:50 +08:00
|
|
|
|
</div>
|
|
|
|
|
|
|
2026-02-14 20:23:34 +08:00
|
|
|
|
<div class="flow-diagram">
|
|
|
|
|
|
<div class="account-box source">
|
|
|
|
|
|
<div class="account-header">账号 A(源)</div>
|
|
|
|
|
|
<div class="entity">IAM User</div>
|
|
|
|
|
|
<div class="action">sts:AssumeRole</div>
|
2026-02-06 03:34:50 +08:00
|
|
|
|
</div>
|
2026-02-14 20:23:34 +08:00
|
|
|
|
<span class="arrow">→</span>
|
|
|
|
|
|
<div class="account-box sts">
|
|
|
|
|
|
<div class="account-header">STS 服务</div>
|
|
|
|
|
|
<div class="step">验证身份</div>
|
|
|
|
|
|
<div class="step">生成临时凭证</div>
|
|
|
|
|
|
</div>
|
|
|
|
|
|
<span class="arrow">→</span>
|
|
|
|
|
|
<div class="account-box target">
|
|
|
|
|
|
<div class="account-header">账号 B(目标)</div>
|
|
|
|
|
|
<div class="entity">CrossAccountRole</div>
|
|
|
|
|
|
<div class="resource">访问 S3/EC2</div>
|
|
|
|
|
|
</div>
|
|
|
|
|
|
</div>
|
2026-02-06 03:34:50 +08:00
|
|
|
|
|
2026-02-14 20:23:34 +08:00
|
|
|
|
<div class="code-block">
|
|
|
|
|
|
<div class="code-title">Python 示例</div>
|
|
|
|
|
|
<pre><code>sts = boto3.client('sts')
|
|
|
|
|
|
assumed = sts.assume_role(
|
2026-02-06 03:34:50 +08:00
|
|
|
|
RoleArn='arn:aws:iam::123456789012:role/CrossAccountRole',
|
2026-02-14 20:23:34 +08:00
|
|
|
|
RoleSessionName='MySession'
|
2026-02-06 03:34:50 +08:00
|
|
|
|
)
|
2026-02-14 20:23:34 +08:00
|
|
|
|
# 使用临时凭证访问目标账号资源</code></pre>
|
2026-02-13 22:10:03 +08:00
|
|
|
|
</div>
|
|
|
|
|
|
|
|
|
|
|
|
<div class="info-box">
|
2026-02-14 12:14:07 +08:00
|
|
|
|
<span class="icon">💡</span>
|
2026-02-14 20:23:34 +08:00
|
|
|
|
<strong>核心思想:</strong>通过角色扮演实现跨账号访问,临时凭证自动过期,更安全更易管理。
|
2026-02-06 03:34:50 +08:00
|
|
|
|
</div>
|
|
|
|
|
|
</div>
|
|
|
|
|
|
</template>
|
|
|
|
|
|
|
2026-02-13 22:10:03 +08:00
|
|
|
|
<script setup>
|
|
|
|
|
|
</script>
|
|
|
|
|
|
|
2026-02-06 03:34:50 +08:00
|
|
|
|
<style scoped>
|
|
|
|
|
|
.cross-account-access-demo {
|
2026-02-13 22:10:03 +08:00
|
|
|
|
border: 1px solid var(--vp-c-divider);
|
|
|
|
|
|
background: var(--vp-c-bg-soft);
|
2026-02-14 20:23:34 +08:00
|
|
|
|
border-radius: 6px;
|
|
|
|
|
|
padding: 0.75rem;
|
|
|
|
|
|
margin: 0.5rem 0;
|
2026-02-06 03:34:50 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
.demo-header {
|
2026-02-14 20:23:34 +08:00
|
|
|
|
display: flex;
|
|
|
|
|
|
align-items: center;
|
|
|
|
|
|
gap: 0.5rem;
|
|
|
|
|
|
margin-bottom: 0.75rem;
|
2026-02-06 03:34:50 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
2026-02-14 20:23:34 +08:00
|
|
|
|
.demo-header .icon { font-size: 1.25rem; }
|
|
|
|
|
|
.demo-header .title { font-weight: bold; font-size: 1rem; }
|
|
|
|
|
|
.demo-header .subtitle { color: var(--vp-c-text-2); font-size: 0.85rem; margin-left: 0.5rem; }
|
2026-02-13 22:10:03 +08:00
|
|
|
|
|
2026-02-06 03:34:50 +08:00
|
|
|
|
.flow-diagram {
|
|
|
|
|
|
display: flex;
|
|
|
|
|
|
align-items: center;
|
|
|
|
|
|
justify-content: center;
|
2026-02-14 20:23:34 +08:00
|
|
|
|
gap: 0.5rem;
|
|
|
|
|
|
margin-bottom: 0.75rem;
|
2026-02-06 03:34:50 +08:00
|
|
|
|
flex-wrap: wrap;
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
.account-box {
|
2026-02-13 22:10:03 +08:00
|
|
|
|
background: var(--vp-c-bg);
|
|
|
|
|
|
border: 1px solid var(--vp-c-divider);
|
2026-02-14 20:23:34 +08:00
|
|
|
|
border-radius: 6px;
|
|
|
|
|
|
padding: 0.6rem;
|
|
|
|
|
|
min-width: 120px;
|
2026-02-06 03:34:50 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
.account-header {
|
2026-02-14 20:23:34 +08:00
|
|
|
|
font-weight: 600;
|
|
|
|
|
|
font-size: 0.75rem;
|
|
|
|
|
|
margin-bottom: 0.4rem;
|
|
|
|
|
|
padding-bottom: 0.3rem;
|
2026-02-13 22:10:03 +08:00
|
|
|
|
border-bottom: 1px solid var(--vp-c-divider);
|
|
|
|
|
|
color: var(--vp-c-text-1);
|
2026-02-06 03:34:50 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
.entity {
|
2026-02-13 22:10:03 +08:00
|
|
|
|
background: var(--vp-c-brand-soft);
|
2026-02-14 20:23:34 +08:00
|
|
|
|
padding: 0.2rem 0.4rem;
|
|
|
|
|
|
border-radius: 3px;
|
|
|
|
|
|
margin-bottom: 0.25rem;
|
2026-02-13 22:10:03 +08:00
|
|
|
|
color: var(--vp-c-brand-1);
|
2026-02-14 20:23:34 +08:00
|
|
|
|
font-size: 0.7rem;
|
2026-02-06 03:34:50 +08:00
|
|
|
|
font-weight: 500;
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
.action {
|
2026-02-13 22:10:03 +08:00
|
|
|
|
color: var(--vp-c-text-3);
|
2026-02-14 20:23:34 +08:00
|
|
|
|
font-size: 0.7rem;
|
2026-02-06 03:34:50 +08:00
|
|
|
|
font-style: italic;
|
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
.step {
|
2026-02-14 20:23:34 +08:00
|
|
|
|
padding: 0.15rem 0;
|
2026-02-13 22:10:03 +08:00
|
|
|
|
color: var(--vp-c-text-2);
|
2026-02-14 20:23:34 +08:00
|
|
|
|
font-size: 0.7rem;
|
2026-02-06 03:34:50 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
.resource {
|
2026-02-14 20:23:34 +08:00
|
|
|
|
background: var(--vp-c-brand-soft);
|
|
|
|
|
|
padding: 0.2rem 0.4rem;
|
|
|
|
|
|
border-radius: 3px;
|
|
|
|
|
|
margin-top: 0.25rem;
|
2026-02-13 22:10:03 +08:00
|
|
|
|
color: var(--vp-c-brand);
|
2026-02-14 20:23:34 +08:00
|
|
|
|
font-size: 0.7rem;
|
2026-02-06 03:34:50 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
.arrow {
|
2026-02-14 20:23:34 +08:00
|
|
|
|
font-size: 1.25rem;
|
2026-02-13 22:10:03 +08:00
|
|
|
|
color: var(--vp-c-text-3);
|
2026-02-06 03:34:50 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
2026-02-14 20:23:34 +08:00
|
|
|
|
.code-block {
|
2026-02-13 22:10:03 +08:00
|
|
|
|
background: var(--vp-c-bg);
|
|
|
|
|
|
border: 1px solid var(--vp-c-divider);
|
2026-02-14 20:23:34 +08:00
|
|
|
|
border-radius: 6px;
|
|
|
|
|
|
padding: 0.6rem;
|
|
|
|
|
|
margin-bottom: 0.75rem;
|
2026-02-06 03:34:50 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
2026-02-14 20:23:34 +08:00
|
|
|
|
.code-title {
|
|
|
|
|
|
font-size: 0.75rem;
|
|
|
|
|
|
font-weight: 600;
|
|
|
|
|
|
margin-bottom: 0.4rem;
|
2026-02-13 22:10:03 +08:00
|
|
|
|
color: var(--vp-c-text-1);
|
2026-02-06 03:34:50 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
2026-02-14 20:23:34 +08:00
|
|
|
|
.code-block pre {
|
2026-02-06 03:34:50 +08:00
|
|
|
|
margin: 0;
|
|
|
|
|
|
overflow-x: auto;
|
|
|
|
|
|
}
|
|
|
|
|
|
|
2026-02-14 20:23:34 +08:00
|
|
|
|
.code-block code {
|
2026-02-13 22:10:03 +08:00
|
|
|
|
color: var(--vp-c-text-2);
|
|
|
|
|
|
font-family: var(--vp-font-family-mono);
|
2026-02-14 20:23:34 +08:00
|
|
|
|
font-size: 0.7rem;
|
|
|
|
|
|
line-height: 1.4;
|
2026-02-06 03:34:50 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
2026-02-13 22:10:03 +08:00
|
|
|
|
.info-box {
|
|
|
|
|
|
background: var(--vp-c-bg-alt);
|
2026-02-14 20:23:34 +08:00
|
|
|
|
padding: 0.6rem;
|
2026-02-13 22:10:03 +08:00
|
|
|
|
border-radius: 6px;
|
2026-02-14 20:23:34 +08:00
|
|
|
|
font-size: 0.85rem;
|
2026-02-13 22:10:03 +08:00
|
|
|
|
color: var(--vp-c-text-2);
|
2026-02-14 20:23:34 +08:00
|
|
|
|
display: flex;
|
|
|
|
|
|
gap: 0.25rem;
|
2026-02-13 22:10:03 +08:00
|
|
|
|
}
|
|
|
|
|
|
|
2026-02-14 20:23:34 +08:00
|
|
|
|
.info-box .icon { flex-shrink: 0; }
|
|
|
|
|
|
.info-box strong { color: var(--vp-c-text-1); }
|
2026-02-06 03:34:50 +08:00
|
|
|
|
|
2026-02-14 20:23:34 +08:00
|
|
|
|
@media (max-width: 640px) {
|
|
|
|
|
|
.flow-diagram { flex-direction: column; }
|
|
|
|
|
|
.arrow { transform: rotate(90deg); }
|
2026-02-06 03:34:50 +08:00
|
|
|
|
}
|
|
|
|
|
|
</style>
|