Federated Control Plane

Console Admin

Central Gov sets global rules; domain managers configure local permissions, IAM mappings, approval timeouts, accounts, and role-based portal layouts.

Role Permission Matrix

Toggle function / space / product / use-case permissions by role

Scope View Edit Approve Admin

Three-Layer IAM Mapping

Cloud platform → EDH roles → Qingflow approval nodes

Cloud → EDH

project_adminDomain Key Account
workspace_managerData Owner
data_engineerData Product Owner
data_analystData Consumer
platform_adminOntology Admin
security_officerSecurity Tag Admin

EDH → Qingflow

Contract apply72h auto-reject
Product publish48h escalate
Ontology change96h escalate
Security tag24h force
SLA breach4h urgent

Mapping Health

Synced roles100%
Orphan accounts3
Pending remap1
Open Approval Center

Approval Timeout Policies

Configure SLA, escalation, and OA / Qingflow integration

Scenario SLA On timeout Channel

Account & Role Binding

Manage enterprise accounts and EDH role associations

Account Roles Domain Status

Role-based Portal Layout

Choose which home modules appear for the selected role

Preview Portal Home