diff --git a/policy_sentry/shared/data/docs/list_alexaforbusiness.html b/policy_sentry/shared/data/docs/list_alexaforbusiness.html index 1c443f5e..4be38653 100644 --- a/policy_sentry/shared/data/docs/list_alexaforbusiness.html +++ b/policy_sentry/shared/data/docs/list_alexaforbusiness.html @@ -310,7 +310,7 @@

- +
@@ -2783,7 +2783,7 @@

- +
@@ -3198,7 +3198,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazonapigateway.html b/policy_sentry/shared/data/docs/list_amazonapigateway.html index 01191b19..e27c7e51 100644 --- a/policy_sentry/shared/data/docs/list_amazonapigateway.html +++ b/policy_sentry/shared/data/docs/list_amazonapigateway.html @@ -310,7 +310,7 @@

- +
@@ -428,7 +428,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazonappflow.html b/policy_sentry/shared/data/docs/list_amazonappflow.html index 77137291..6c489ea1 100644 --- a/policy_sentry/shared/data/docs/list_amazonappflow.html +++ b/policy_sentry/shared/data/docs/list_amazonappflow.html @@ -310,7 +310,7 @@

- +
@@ -1189,7 +1189,7 @@

- +
@@ -1329,7 +1329,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazonappintegrations.html b/policy_sentry/shared/data/docs/list_amazonappintegrations.html index 3b8daa92..90fdf0e5 100644 --- a/policy_sentry/shared/data/docs/list_amazonappintegrations.html +++ b/policy_sentry/shared/data/docs/list_amazonappintegrations.html @@ -310,7 +310,7 @@

- +
@@ -1594,7 +1594,7 @@

- +
@@ -1856,7 +1856,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazonapplicationrecoverycontroller-zonalshift.html b/policy_sentry/shared/data/docs/list_amazonapplicationrecoverycontroller-zonalshift.html new file mode 100644 index 00000000..567b7eea --- /dev/null +++ b/policy_sentry/shared/data/docs/list_amazonapplicationrecoverycontroller-zonalshift.html @@ -0,0 +1,1234 @@ + + + + + + Actions, resources, and condition keys for Amazon Application Recovery Controller - Zonal Shift - Service Authorization Reference + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+ + + +
+ + +
+
+ +
+ + + Actions, resources, and condition keys for Amazon Application Recovery Controller - Zonal Shift - Service Authorization Reference + + + + + + + + + +
+
+ + +
+ + +
+
+ + +

+ Actions, resources, and condition keys for Amazon Application Recovery Controller - Zonal Shift +

+
+ + + + +
+

+ Amazon Application Recovery Controller - Zonal Shift (service prefix: + + arc-zonal-shift + + ) provides the following service-specific resources, actions, and condition context keys for use in IAM permission policies. +

+

+ References: +

+
+ +
+ +

+ Actions defined by Amazon Application Recovery Controller - Zonal Shift +

+

+ You can specify the following actions in the + + Action + + element of an IAM policy statement. Use policies to grant permissions to perform an operation in AWS. When you use an action in a policy, you usually allow or deny access to the API operation or CLI command with the same name. However, in some cases, a single action controls access to more than one operation. Alternatively, some operations require several different actions. +

+

+ The + + Resource types + + column of the Actions table indicates whether each action supports resource-level permissions. If there is no value for this column, you must specify all resources ("*") to which the policy applies in the + + Resource + + element of your policy statement. If the column includes a resource type, then you can specify an ARN of that type in a statement with that action. If the action has one or more required resources, the caller must have permission to use the action with those resources. Required resources are indicated in the table with an asterisk (*). If you limit resource access with the + + Resource + + element in an IAM policy, you must include an ARN or pattern for each required resource type. Some actions support multiple resource types. If the resource type is optional (not indicated as required), then you can choose to use one of the optional resource types. +

+

+ The + + Condition keys + + column of the Actions table includes keys that you can specify in a policy statement's + + Condition + + element. For more information on the condition keys that are associated with resources for the service, see the + + Condition keys + + column of the Resource types table. +

+
+
+ + +
+ Note +
+
+
+

+ Resource condition keys are listed in the + + Resource types + + table. You can find a link to the resource type that applies to an action in the + + Resource types (*required) + + column of the Actions table. The resource type in the Resource types table includes the + + Condition keys + + column, which are the resource condition keys that apply to an action in the Actions table. +

+
+
+

+ For details about the columns in the following table, see + + Actions table + + . +

+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+ Actions + + Description + + Access level + + Resource types (*required) + + Condition keys + + Dependent actions +
+ + CancelZonalShift + + + Grants permission to cancel an active zonal shift + + Write + +

+ + ALB* + +

+
+ +
+

+ + NLB* + +

+
+ +
+ +

+ + arc-zonal-shift:ResourceIdentifier + +

+

+ + aws:ResourceTag/${TagKey} + +

+

+ + elasticloadbalancing:ResourceTag/${TagKey} + +

+
+
+ + CreatePracticeRunConfiguration + + + Grants permission to create a practice run configuration + + Write + +

+ + ALB* + +

+
+ +

+ cloudwatch:DescribeAlarms +

+

+ iam:CreateServiceLinkedRole +

+
+

+ + NLB* + +

+
+ +
+ +

+ + arc-zonal-shift:ResourceIdentifier + +

+

+ + aws:ResourceTag/${TagKey} + +

+

+ + elasticloadbalancing:ResourceTag/${TagKey} + +

+
+
+ + DeletePracticeRunConfiguration + + + Grants permission to delete a practice run configuration + + Write + +

+ + ALB* + +

+
+ +
+

+ + NLB* + +

+
+ +
+ +

+ + arc-zonal-shift:ResourceIdentifier + +

+

+ + aws:ResourceTag/${TagKey} + +

+

+ + elasticloadbalancing:ResourceTag/${TagKey} + +

+
+
+ + GetAutoshiftObserverNotificationStatus + + + Grants permission to get autoshift observer notification status + + Read + + + +
+ + GetManagedResource + + + Grants permission to get information about a managed resource + + Read + +

+ + ALB* + +

+
+ +
+

+ + NLB* + +

+
+ +
+ +

+ + arc-zonal-shift:ResourceIdentifier + +

+

+ + aws:ResourceTag/${TagKey} + +

+

+ + elasticloadbalancing:ResourceTag/${TagKey} + +

+
+
+ + ListAutoshifts + + + Grants permission to list active and completed autoshifts + + List + + + +
+ + ListManagedResources + + + Grants permission to list managed resources + + List + + + +
+ + ListZonalShifts + + + Grants permission to list zonal shifts + + List + + + +
+ + StartZonalShift + + + Grants permission to start a zonal shift + + Write + +

+ + ALB* + +

+
+ +
+

+ + NLB* + +

+
+ +
+ +

+ + arc-zonal-shift:ResourceIdentifier + +

+

+ + aws:ResourceTag/${TagKey} + +

+

+ + elasticloadbalancing:ResourceTag/${TagKey} + +

+
+
+ + UpdateAutoshiftObserverNotificationStatus + + + Grants permission to update autoshift observer notification status + + Write + + + +
+ + UpdatePracticeRunConfiguration + + + Grants permission to update a practice run configuration + + Write + +

+ + ALB* + +

+
+ +

+ cloudwatch:DescribeAlarms +

+

+ iam:CreateServiceLinkedRole +

+
+

+ + NLB* + +

+
+ +
+ +

+ + arc-zonal-shift:ResourceIdentifier + +

+

+ + aws:ResourceTag/${TagKey} + +

+

+ + elasticloadbalancing:ResourceTag/${TagKey} + +

+
+
+ + UpdateZonalAutoshiftConfiguration + + + Grants permission to update a zonal autoshift status + + Write + +

+ + ALB* + +

+
+ +
+

+ + NLB* + +

+
+ +
+ +

+ + arc-zonal-shift:ResourceIdentifier + +

+

+ + aws:ResourceTag/${TagKey} + +

+

+ + elasticloadbalancing:ResourceTag/${TagKey} + +

+
+
+ + UpdateZonalShift + + + Grants permission to update an existing zonal shift + + Write + +

+ + ALB* + +

+
+ +
+

+ + NLB* + +

+
+ +
+ +

+ + arc-zonal-shift:ResourceIdentifier + +

+

+ + aws:ResourceTag/${TagKey} + +

+

+ + elasticloadbalancing:ResourceTag/${TagKey} + +

+
+
+
+
+

+ Resource types defined by Amazon Application Recovery Controller - Zonal Shift +

+

+ The following resource types are defined by this service and can be used in the + + Resource + + element of IAM permission policy statements. Each action in the + + Actions table + + identifies the resource types that can be specified with that action. A resource type can also define which condition keys you can include in a policy. These keys are displayed in the last column of the Resource types table. For details about the columns in the following table, see + + Resource types table + + . +

+
+
+ + + + + + + + + + + + + + + + + + +
+ Resource types + + ARN + + Condition keys +
+ + ALB + + + + arn:$ + + { + + Partition}:elasticloadbalancing:$ + + { + + Region}:$ + + { + + Account}:loadbalancer/app/$ + + { + + LoadBalancerName}/$ + + { + + LoadBalancerId} + + +

+ + arc-zonal-shift:ResourceIdentifier + +

+

+ + aws:ResourceTag/${TagKey} + +

+

+ + elasticloadbalancing:ResourceTag/${TagKey} + +

+
+ + NLB + + + + arn:$ + + { + + Partition}:elasticloadbalancing:$ + + { + + Region}:$ + + { + + Account}:loadbalancer/net/$ + + { + + LoadBalancerName}/$ + + { + + LoadBalancerId} + + +

+ + arc-zonal-shift:ResourceIdentifier + +

+

+ + aws:ResourceTag/${TagKey} + +

+

+ + elasticloadbalancing:ResourceTag/${TagKey} + +

+
+
+
+

+ Condition keys for Amazon Application Recovery Controller - Zonal Shift +

+

+ Amazon Application Recovery Controller - Zonal Shift defines the following condition keys that can be used in the + + Condition + + element of an IAM policy. You can use these keys to further refine the conditions under which the policy statement applies. For details about the columns in the following table, see + + Condition keys table + + . +

+

+ To view the global condition keys that are available to all services, see + + Available global condition keys + + . +

+
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+ Condition keys + + Description + + Type +
+ + arc-zonal-shift:ResourceIdentifier + + + Filters access by the resource identifier of the managed resource + + String +
+ + aws:ResourceTag/${TagKey} + + + Filters access by the tags associated with the managed resource + + String +
+ + elasticloadbalancing:ResourceTag/${TagKey} + + + Filters access by the tags associated with the managed resource + + String +
+
+
+ + + + +
+ + + + +
+ + +
+ +
+
+
+ + +
+
+
+ + +
+
+ + +
+ + diff --git a/policy_sentry/shared/data/docs/list_amazonappstream2.0.html b/policy_sentry/shared/data/docs/list_amazonappstream2.0.html index ff50277b..2b39b69a 100644 --- a/policy_sentry/shared/data/docs/list_amazonappstream2.0.html +++ b/policy_sentry/shared/data/docs/list_amazonappstream2.0.html @@ -310,7 +310,7 @@

- +
@@ -3124,7 +3124,7 @@

- +
@@ -3409,7 +3409,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazonathena.html b/policy_sentry/shared/data/docs/list_amazonathena.html index ede9e793..b159fdc0 100644 --- a/policy_sentry/shared/data/docs/list_amazonathena.html +++ b/policy_sentry/shared/data/docs/list_amazonathena.html @@ -310,7 +310,7 @@

- +
@@ -2353,7 +2353,7 @@

- +
@@ -2498,7 +2498,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazonbedrock.html b/policy_sentry/shared/data/docs/list_amazonbedrock.html index b8339e08..8fd92773 100644 --- a/policy_sentry/shared/data/docs/list_amazonbedrock.html +++ b/policy_sentry/shared/data/docs/list_amazonbedrock.html @@ -310,7 +310,7 @@

- +
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + +
@@ -2609,6 +2609,25 @@
+ + InvokeInlineAgent + + + Grants permission to send user input (text-only) to the inline agent for Bedrock + + Read + + + +
@@ -3705,6 +3724,44 @@
+ + RenderPrompt + + [permission only] + + Grants permission to render an existing prompt or its version + + Read + +

+ + prompt* + +

+
+ +
+

+ + prompt-version* + +

+
+ +
@@ -4692,6 +4749,25 @@
+ + ValidateFlowDefinition + + + Grants permission to validate prompt flow definitions + + Read + + + +
@@ -4715,7 +4791,7 @@

- +
@@ -5453,7 +5529,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazonbraket.html b/policy_sentry/shared/data/docs/list_amazonbraket.html index c2f99306..6b86afa3 100644 --- a/policy_sentry/shared/data/docs/list_amazonbraket.html +++ b/policy_sentry/shared/data/docs/list_amazonbraket.html @@ -310,7 +310,7 @@

- +
@@ -808,7 +808,7 @@

- +
@@ -918,7 +918,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazonchime.html b/policy_sentry/shared/data/docs/list_amazonchime.html index db8d0297..aa4eeea0 100644 --- a/policy_sentry/shared/data/docs/list_amazonchime.html +++ b/policy_sentry/shared/data/docs/list_amazonchime.html @@ -310,7 +310,7 @@

- +
@@ -8994,7 +8994,7 @@

- +
@@ -9496,7 +9496,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazonclouddirectory.html b/policy_sentry/shared/data/docs/list_amazonclouddirectory.html index 0f2c6670..2038bbf0 100644 --- a/policy_sentry/shared/data/docs/list_amazonclouddirectory.html +++ b/policy_sentry/shared/data/docs/list_amazonclouddirectory.html @@ -310,7 +310,7 @@

- +
@@ -2183,7 +2183,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncloudfront.html b/policy_sentry/shared/data/docs/list_amazoncloudfront.html index 2e0af252..a096ee84 100644 --- a/policy_sentry/shared/data/docs/list_amazoncloudfront.html +++ b/policy_sentry/shared/data/docs/list_amazoncloudfront.html @@ -310,7 +310,7 @@

- +
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + - - - + + + + + + + + + + + + + + + + + + - - - + + + + + + + + + + @@ -2569,17 +2889,30 @@
- - - + + + + + + + + + + @@ -3007,6 +3353,30 @@
+ + + + + + + +
@@ -333,6 +333,31 @@
+ + AllowVendedLogDeliveryForResource + + [permission only] + + Grants permission to configure vended log delivery for a distribution + + Permissions management + +

+ + distribution + +

+
+ +
@@ -390,6 +415,48 @@

+ + CreateAnycastIpList + + + Grants permission to create an Anycast static IP list + + Write + +

+ + anycast-ip-list* + +

+
+ +
+ +

+ + aws:RequestTag/${TagKey} + +

+

+ + aws:TagKeys + +

+
+
@@ -830,6 +897,59 @@
+ + CreateVpcOrigin + + + Grants permission to create a VPC origin + + Write + + +

+ + aws:RequestTag/${TagKey} + +

+

+ + aws:TagKeys + +

+
+
+ + DeleteAnycastIpList + + + Grants permission to delete an Anycast static IP list + + Write + +

+ + anycast-ip-list* + +

+
+ +
@@ -1199,6 +1319,30 @@
+ + DeleteVpcOrigin + + + Grants permission to delete a VPC origin + + Write + +

+ + vpcorigin* + +

+
+ +
@@ -1247,6 +1391,30 @@
+ + GetAnycastIpList + + + Grants permission to get an Anycast static IP list + + Read + +

+ + anycast-ip-list* + +

+
+ +
@@ -1914,6 +2082,49 @@
+ + GetVpcOrigin + + + Grants permission to get the information about a VPC origin + + Read + +

+ + vpcorigin* + +

+
+ +
+ + ListAnycastIpLists + + + Grants permission to list your Anycast static IP lists + + List + + + +
@@ -2014,6 +2225,25 @@
+ + ListDistributionsByAnycastIpListId + + + Grants permission to list the distributions in your account that are associated with the specified AnycastIpListId + + List + + + +
@@ -2129,6 +2359,25 @@
+ + ListDistributionsByVpcOriginId + + + Grants permission to list IDs for distributions associated with the specified VPC origin + + List + + + +
@@ -2422,17 +2671,30 @@
+ ListTagsForResource + Grants permission to list tags for a CloudFront resource + Read +

+ + anycast-ip-list + +

+
+ +

@@ -2445,6 +2707,19 @@

+

+ + vpcorigin + +

+
+ +
@@ -2465,6 +2740,25 @@
+ + ListVpcOrigins + + + Grants permission to list VPC origins + + List + + + +
@@ -2490,17 +2784,30 @@
+ TagResource + Grants permission to add tags to a CloudFront resource + Tagging +

+ + anycast-ip-list + +

+
+ +

@@ -2526,6 +2833,19 @@

+

+ + vpcorigin + +

+
+ +
+ UntagResource + Grants permission to remove tags from a CloudFront resource + Tagging +

+ + anycast-ip-list + +

+
+ +

@@ -2605,6 +2938,19 @@

+

+ + vpcorigin + +

+
+ +
+ + UpdateVpcOrigin + + + Grants permission to update a VPC origin + + Write + +

+ + vpcorigin* + +

+
+ +
@@ -3030,7 +3400,7 @@

- +
+ + + + + + + + + +
@@ -3392,6 +3762,68 @@

+ + anycast-ip-list + + + + arn:$ + + { + + Partition}:cloudfront::$ + + { + + Account}:anycast-ip-list/$ + + { + + Id} + + +

+ + aws:ResourceTag/${TagKey} + +

+
+ + vpcorigin + + + + arn:$ + + { + + Partition}:cloudfront::$ + + { + + Account}:vpcorigin/$ + + { + + Id} + + +

+ + aws:ResourceTag/${TagKey} + +

+
@@ -3418,7 +3850,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncloudfrontkeyvaluestore.html b/policy_sentry/shared/data/docs/list_amazoncloudfrontkeyvaluestore.html index b20e6754..69d01aac 100644 --- a/policy_sentry/shared/data/docs/list_amazoncloudfrontkeyvaluestore.html +++ b/policy_sentry/shared/data/docs/list_amazoncloudfrontkeyvaluestore.html @@ -310,7 +310,7 @@

- +
@@ -500,7 +500,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncloudsearch.html b/policy_sentry/shared/data/docs/list_amazoncloudsearch.html index efb48ba3..6529b9ab 100644 --- a/policy_sentry/shared/data/docs/list_amazoncloudsearch.html +++ b/policy_sentry/shared/data/docs/list_amazoncloudsearch.html @@ -310,7 +310,7 @@

- +
@@ -1149,7 +1149,7 @@
- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncloudwatch.html b/policy_sentry/shared/data/docs/list_amazoncloudwatch.html index 07703a26..85570e8f 100644 --- a/policy_sentry/shared/data/docs/list_amazoncloudwatch.html +++ b/policy_sentry/shared/data/docs/list_amazoncloudwatch.html @@ -310,7 +310,7 @@

- +
+ + + + + + + +
@@ -1063,6 +1063,26 @@
+ + ListEntitiesForMetric + + [permission only] + + Grants permission to retrieve all the entities that are emitting a given metric + + List + + + +
@@ -1964,7 +1984,7 @@

- +
@@ -2209,7 +2229,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncloudwatchapplicationinsights.html b/policy_sentry/shared/data/docs/list_amazoncloudwatchapplicationinsights.html index c1bc123a..ee5686fb 100644 --- a/policy_sentry/shared/data/docs/list_amazoncloudwatchapplicationinsights.html +++ b/policy_sentry/shared/data/docs/list_amazoncloudwatchapplicationinsights.html @@ -310,7 +310,7 @@

- +
@@ -1035,7 +1035,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncloudwatchapplicationsignals.html b/policy_sentry/shared/data/docs/list_amazoncloudwatchapplicationsignals.html index 86c5d6b3..2895ce5e 100644 --- a/policy_sentry/shared/data/docs/list_amazoncloudwatchapplicationsignals.html +++ b/policy_sentry/shared/data/docs/list_amazoncloudwatchapplicationsignals.html @@ -310,7 +310,7 @@

- +
+ + + + + + + +
@@ -453,6 +453,25 @@
+ + ListObservedEntities + + + Grants permission to list entities associated with other entities + + List + + + +
@@ -717,7 +736,7 @@

- +
@@ -792,7 +811,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncloudwatchevidently.html b/policy_sentry/shared/data/docs/list_amazoncloudwatchevidently.html index e4fca761..1118e49e 100644 --- a/policy_sentry/shared/data/docs/list_amazoncloudwatchevidently.html +++ b/policy_sentry/shared/data/docs/list_amazoncloudwatchevidently.html @@ -310,7 +310,7 @@

- +
@@ -1400,7 +1400,7 @@

- +
@@ -1627,7 +1627,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncloudwatchinternetmonitor.html b/policy_sentry/shared/data/docs/list_amazoncloudwatchinternetmonitor.html index ceb0fece..6f4a8166 100644 --- a/policy_sentry/shared/data/docs/list_amazoncloudwatchinternetmonitor.html +++ b/policy_sentry/shared/data/docs/list_amazoncloudwatchinternetmonitor.html @@ -310,7 +310,7 @@

- +
@@ -799,7 +799,7 @@

- +
@@ -939,7 +939,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncloudwatchlogs.html b/policy_sentry/shared/data/docs/list_amazoncloudwatchlogs.html index 73dd7532..6a0ef85d 100644 --- a/policy_sentry/shared/data/docs/list_amazoncloudwatchlogs.html +++ b/policy_sentry/shared/data/docs/list_amazoncloudwatchlogs.html @@ -310,7 +310,7 @@

- +
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
@@ -759,6 +759,25 @@
+ + DeleteIndexPolicy + + + Grants permission to delete an index policy attached to a log group + + Write + + + +
@@ -961,6 +980,30 @@
+ + DeleteTransformer + + + Grants permission to delete a transformer associated with the specified log group + + Write + +

+ + log-group* + +

+
+ +
@@ -1094,6 +1137,44 @@
+ + DescribeFieldIndexes + + + Grants permission to return all the indexing attributes that are attached with the log groups + + List + + + +
+ + DescribeIndexPolicies + + + Grants permission to return all the index policies that are attached with the log groups + + List + + + +
@@ -1550,6 +1631,30 @@
+ + GetTransformer + + + Grants permission to return transformer associated with the specified log group + + Read + +

+ + log-group* + +

+
+ +
+ + ListLogGroupsForQuery + + + Grants permission to return all the log groups that are associated with the specified query + + List + + + +
@@ -2021,6 +2145,25 @@
+ + PutIndexPolicy + + + Grants permission to attach an index policy at log group level to optimize search and query + + Write + + + +
@@ -2171,6 +2314,30 @@
+ + PutTransformer + + + Grants permission to create or update a transformer and associates it with the specified log group + + Write + +

+ + log-group* + +

+
+ +
@@ -2426,6 +2593,25 @@
+ + TestTransformer + + + Grants permission to test the transformer against a sample of log event messages + + Read + + + +
@@ -2749,7 +2935,7 @@

- +
@@ -3038,7 +3224,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncloudwatchnetworkmonitor.html b/policy_sentry/shared/data/docs/list_amazoncloudwatchnetworkmonitor.html index 34eab80f..2952a76c 100644 --- a/policy_sentry/shared/data/docs/list_amazoncloudwatchnetworkmonitor.html +++ b/policy_sentry/shared/data/docs/list_amazoncloudwatchnetworkmonitor.html @@ -310,7 +310,7 @@

- +
@@ -686,7 +686,7 @@

- +
@@ -796,7 +796,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncloudwatchobservabilityaccessmanager.html b/policy_sentry/shared/data/docs/list_amazoncloudwatchobservabilityaccessmanager.html index dae80530..3412a7d8 100644 --- a/policy_sentry/shared/data/docs/list_amazoncloudwatchobservabilityaccessmanager.html +++ b/policy_sentry/shared/data/docs/list_amazoncloudwatchobservabilityaccessmanager.html @@ -310,7 +310,7 @@

- +
@@ -919,7 +919,7 @@

- +
@@ -1029,7 +1029,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncloudwatchsynthetics.html b/policy_sentry/shared/data/docs/list_amazoncloudwatchsynthetics.html index 715b6d57..8dc2a487 100644 --- a/policy_sentry/shared/data/docs/list_amazoncloudwatchsynthetics.html +++ b/policy_sentry/shared/data/docs/list_amazoncloudwatchsynthetics.html @@ -310,7 +310,7 @@

- +
@@ -1151,7 +1151,7 @@

- +
@@ -1261,7 +1261,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncodecatalyst.html b/policy_sentry/shared/data/docs/list_amazoncodecatalyst.html index b3f417fb..30906804 100644 --- a/policy_sentry/shared/data/docs/list_amazoncodecatalyst.html +++ b/policy_sentry/shared/data/docs/list_amazoncodecatalyst.html @@ -310,7 +310,7 @@

- +
@@ -1439,7 +1439,7 @@

- +
@@ -1597,7 +1597,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncodeguru.html b/policy_sentry/shared/data/docs/list_amazoncodeguru.html index 1a34f062..22d23e3b 100644 --- a/policy_sentry/shared/data/docs/list_amazoncodeguru.html +++ b/policy_sentry/shared/data/docs/list_amazoncodeguru.html @@ -310,7 +310,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncodeguruprofiler.html b/policy_sentry/shared/data/docs/list_amazoncodeguruprofiler.html index 0e0c960d..486add41 100644 --- a/policy_sentry/shared/data/docs/list_amazoncodeguruprofiler.html +++ b/policy_sentry/shared/data/docs/list_amazoncodeguruprofiler.html @@ -310,7 +310,7 @@

- +
@@ -934,7 +934,7 @@

- +
@@ -1009,7 +1009,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncodegurureviewer.html b/policy_sentry/shared/data/docs/list_amazoncodegurureviewer.html index 15e1d750..9ae81147 100644 --- a/policy_sentry/shared/data/docs/list_amazoncodegurureviewer.html +++ b/policy_sentry/shared/data/docs/list_amazoncodegurureviewer.html @@ -310,7 +310,7 @@

- +
@@ -940,7 +940,7 @@

- +
@@ -1049,7 +1049,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncodegurusecurity.html b/policy_sentry/shared/data/docs/list_amazoncodegurusecurity.html index 27c9b5d6..4b1f6f74 100644 --- a/policy_sentry/shared/data/docs/list_amazoncodegurusecurity.html +++ b/policy_sentry/shared/data/docs/list_amazoncodegurusecurity.html @@ -310,7 +310,7 @@

- +
@@ -758,7 +758,7 @@

- +
@@ -833,7 +833,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncodewhisperer.html b/policy_sentry/shared/data/docs/list_amazoncodewhisperer.html index 5ceba7cb..e5ed4219 100644 --- a/policy_sentry/shared/data/docs/list_amazoncodewhisperer.html +++ b/policy_sentry/shared/data/docs/list_amazoncodewhisperer.html @@ -310,7 +310,7 @@

- +
@@ -1055,7 +1055,7 @@

- +
@@ -1165,7 +1165,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncognitoidentity.html b/policy_sentry/shared/data/docs/list_amazoncognitoidentity.html index 05c0bb93..ec204a83 100644 --- a/policy_sentry/shared/data/docs/list_amazoncognitoidentity.html +++ b/policy_sentry/shared/data/docs/list_amazoncognitoidentity.html @@ -310,7 +310,7 @@

- +
@@ -971,7 +971,7 @@

- +
@@ -1046,7 +1046,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncognitosync.html b/policy_sentry/shared/data/docs/list_amazoncognitosync.html index 4e8fd8e6..a1cc3d6e 100644 --- a/policy_sentry/shared/data/docs/list_amazoncognitosync.html +++ b/policy_sentry/shared/data/docs/list_amazoncognitosync.html @@ -310,7 +310,7 @@

- +
@@ -803,7 +803,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncognitouserpools.html b/policy_sentry/shared/data/docs/list_amazoncognitouserpools.html index 08ed73aa..a4a7d274 100644 --- a/policy_sentry/shared/data/docs/list_amazoncognitouserpools.html +++ b/policy_sentry/shared/data/docs/list_amazoncognitouserpools.html @@ -310,7 +310,7 @@

- +
@@ -2865,7 +2865,7 @@

- +
@@ -2978,7 +2978,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncomprehend.html b/policy_sentry/shared/data/docs/list_amazoncomprehend.html index 75eb2882..49cb2103 100644 --- a/policy_sentry/shared/data/docs/list_amazoncomprehend.html +++ b/policy_sentry/shared/data/docs/list_amazoncomprehend.html @@ -310,7 +310,7 @@

- +
@@ -3594,7 +3594,7 @@

- +
@@ -4163,7 +4163,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazoncomprehendmedical.html b/policy_sentry/shared/data/docs/list_amazoncomprehendmedical.html index 049e9dc9..5f986800 100644 --- a/policy_sentry/shared/data/docs/list_amazoncomprehendmedical.html +++ b/policy_sentry/shared/data/docs/list_amazoncomprehendmedical.html @@ -310,7 +310,7 @@

- +
@@ -848,7 +848,7 @@

- +
+ + + + + + + + + + + + + @@ -1617,6 +1657,53 @@
+ + + + + + + + + + + + + @@ -4169,6 +4261,11 @@
connect:InstanceId

+

+ + connect:FlowType + +

@@ -5118,6 +5215,43 @@
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + @@ -9736,6 +9959,87 @@
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + @@ -11086,6 +11445,11 @@
connect:InstanceId

+

+ + connect:FlowType + +

@@ -11128,6 +11492,11 @@
connect:InstanceId

+

+ + connect:FlowType + +

@@ -11254,6 +11623,11 @@
connect:InstanceId

+

+ + connect:FlowType + +

@@ -14469,6 +14843,19 @@

ArrayOfString

+ + + + + + + + + + + + + + +
diff --git a/policy_sentry/shared/data/docs/list_amazonconnect.html b/policy_sentry/shared/data/docs/list_amazonconnect.html index 04d52f91..49107da9 100644 --- a/policy_sentry/shared/data/docs/list_amazonconnect.html +++ b/policy_sentry/shared/data/docs/list_amazonconnect.html @@ -388,6 +388,43 @@

+ + AssociateAnalyticsDataSet + + + Grants permission to grant access and to associate a dataset with the specified AWS account + + Write + +

+ + instance* + +

+
+ +
+ +

+ + connect:InstanceId + +

+
+
@@ -1106,10 +1143,9 @@
- + BatchAssociateAnalyticsDataSet - [permission only] Grants permission to grant access and to associate the datasets with the specified AWS account @@ -1144,10 +1180,9 @@
- + BatchDisassociateAnalyticsDataSet - [permission only] Grants permission to revoke access and to disassociate the datasets with the specified AWS account @@ -1566,6 +1601,11 @@
connect:InstanceId

+

+ + connect:FlowType + +

+ + CreateContactFlowVersion + + + Grants permission to create a version a flow in an Amazon Connect instance + + Write + +

+ + contact-flow* + +

+
+ +
+ +

+ + aws:ResourceTag/${TagKey} + +

+

+ + connect:InstanceId + +

+

+ + connect:FlowType + +

+
+
@@ -3042,6 +3129,11 @@
connect:InstanceId

+

+ + connect:FlowType + +

+ + DisassociateAnalyticsDataSet + + + Grants permission to revoke access and to disassociate a dataset with the specified AWS account + + Write + +

+ + instance* + +

+
+ +
+ +

+ + connect:InstanceId + +

+
+
@@ -6431,6 +6565,43 @@
+ + ListAnalyticsDataAssociations + + + Grants permission to list the association status of a dataset for a given Amazon Connect instance + + List + +

+ + instance* + +

+
+ +
+ +

+ + connect:InstanceId + +

+
+
@@ -6603,6 +6774,53 @@
+ + ListContactFlowVersions + + + Grants permission to list all the versions a flow in an Amazon Connect instance + + List + +

+ + contact-flow* + +

+
+ +
+ +

+ + aws:ResourceTag/${TagKey} + +

+

+ + connect:InstanceId + +

+

+ + connect:FlowType + +

+
+
@@ -8834,6 +9052,11 @@
connect:SearchTag/${TagKey}

+

+ + connect:FlowType + +

+ + StartOutboundChatContact + + + Grants permission to initiate an outbound chat using the Amazon Connect API + + Write + +

+ + contact-flow* + +

+
+ +
+

+ + instance* + +

+
+ +
+

+ + contact + +

+
+ +
+

+ + phone-number + +

+
+ +
+ +

+ + connect:InstanceId + +

+

+ + connect:Subtype + +

+
+
@@ -9760,6 +10064,56 @@
+ + StartScreenSharing + + + Grants permission to start screen sharing for contact + + Write + +

+ + contact* + +

+
+ +
+

+ + instance* + +

+
+ +
+ +

+ + connect:InstanceId + +

+
+
@@ -9837,6 +10191,11 @@
connect:InstanceId

+

+ + connect:AssignmentType + +

+ + connect:AssignmentType + + + Filters access by restricting access to create contacts based on Assignment Type + + String +
@@ -14482,6 +14869,19 @@

String

+ + connect:FlowType + + + Filters access by Flow type + + ArrayOfString +
@@ -14547,6 +14947,19 @@

String

+ + connect:Subtype + + + Filters access by restricting creation of a contact for specific subtypes + + String +
diff --git a/policy_sentry/shared/data/docs/list_amazonconnectcases.html b/policy_sentry/shared/data/docs/list_amazonconnectcases.html index 1267a08c..2d58bc97 100644 --- a/policy_sentry/shared/data/docs/list_amazonconnectcases.html +++ b/policy_sentry/shared/data/docs/list_amazonconnectcases.html @@ -310,7 +310,7 @@

- +
@@ -1746,7 +1746,7 @@

- +
@@ -2020,7 +2020,7 @@

- +
diff --git a/policy_sentry/shared/data/docs/list_amazonconnectcustomerprofiles.html b/policy_sentry/shared/data/docs/list_amazonconnectcustomerprofiles.html index 86d83b52..45f61478 100644 --- a/policy_sentry/shared/data/docs/list_amazonconnectcustomerprofiles.html +++ b/policy_sentry/shared/data/docs/list_amazonconnectcustomerprofiles.html @@ -310,7 +310,7 @@

- +
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
@@ -555,6 +555,53 @@
+ + CreateEventTrigger + + + Grants permission to create an event trigger in the domain + + Write + +

+ + domains* + +

+
+ +
+

+ + event-triggers* + +

+
+

+ + aws:RequestTag/${TagKey} + +

+

+ + aws:TagKeys + +

+
+
@@ -860,6 +907,43 @@
+ + DeleteEventTrigger + + + Grants permission to delete an event trigger in the domain + + Write + +

+ + domains* + +

+
+ +
+

+ + event-triggers* + +

+
+ +
@@ -1266,6 +1350,43 @@
+ + GetEventTrigger + + + Grants permission to get an event trigger in the domain + + Read + +

+ + domains* + +

+
+ +
+

+ + event-triggers* + +

+
+ +
@@ -1749,6 +1870,30 @@
+ + ListEventTriggers + + + Grants permission to list all the event triggers in the domain + + List + +

+ + domains* + +

+
+ +
@@ -2512,6 +2657,43 @@

+ + UpdateEventTrigger + + + Grants permission to update an event trigger in the domain + + Write + +

+ + domains* + +

+
+ +
+

+ + event-triggers* + +

+
+ +
@@ -2559,7 +2741,7 @@

- +
+ + + + +
@@ -2803,6 +2985,45 @@

+ + event-triggers + + + + arn:$ + + { + + Partition}:profile:$ + + { + + Region}:$ + + { + + Account}:domains/$ + + { + + DomainName}/event-triggers/$ + + { + + EventTriggerName} + + +

+ + aws:ResourceTag/${TagKey} + +

+
@@ -2829,7 +3050,7 @@

- +
@@ -2919,8 +3140,8 @@

- diff --git a/policy_sentry/shared/data/docs/list_amazonconnectoutboundcampaigns.html b/policy_sentry/shared/data/docs/list_amazonconnectoutboundcampaigns.html new file mode 100644 index 00000000..1dddfb6e --- /dev/null +++ b/policy_sentry/shared/data/docs/list_amazonconnectoutboundcampaigns.html @@ -0,0 +1,1485 @@ + + + + + + Actions, resources, and condition keys for Amazon Connect Outbound Campaigns - Service Authorization Reference + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+ + + +
+ + +
+
+ +
+ + + Actions, resources, and condition keys for Amazon Connect Outbound Campaigns - Service Authorization Reference + + + + + + + + + +
+
+ + +
+ + +
+
+ + +

+ Actions, resources, and condition keys for Amazon Connect Outbound Campaigns +

+
+ + + + +
+

+ Amazon Connect Outbound Campaigns (service prefix: + + connect-campaigns + + ) provides the following service-specific resources, actions, and condition context keys for use in IAM permission policies. +

+

+ References: +

+
+ +
+ +

+ Actions defined by Amazon Connect Outbound Campaigns +

+

+ You can specify the following actions in the + + Action + + element of an IAM policy statement. Use policies to grant permissions to perform an operation in AWS. When you use an action in a policy, you usually allow or deny access to the API operation or CLI command with the same name. However, in some cases, a single action controls access to more than one operation. Alternatively, some operations require several different actions. +

+

+ The + + Resource types + + column of the Actions table indicates whether each action supports resource-level permissions. If there is no value for this column, you must specify all resources ("*") to which the policy applies in the + + Resource + + element of your policy statement. If the column includes a resource type, then you can specify an ARN of that type in a statement with that action. If the action has one or more required resources, the caller must have permission to use the action with those resources. Required resources are indicated in the table with an asterisk (*). If you limit resource access with the + + Resource + + element in an IAM policy, you must include an ARN or pattern for each required resource type. Some actions support multiple resource types. If the resource type is optional (not indicated as required), then you can choose to use one of the optional resource types. +

+

+ The + + Condition keys + + column of the Actions table includes keys that you can specify in a policy statement's + + Condition + + element. For more information on the condition keys that are associated with resources for the service, see the + + Condition keys + + column of the Resource types table. +

+
+
+ + +
+ Note +
+
+
+

+ Resource condition keys are listed in the + + Resource types + + table. You can find a link to the resource type that applies to an action in the + + Resource types (*required) + + column of the Actions table. The resource type in the Resource types table includes the + + Condition keys + + column, which are the resource condition keys that apply to an action in the Actions table. +

+
+
+

+ For details about the columns in the following table, see + + Actions table + + . +

+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+ Actions + + Description + + Access level + + Resource types (*required) + + Condition keys + + Dependent actions +
+ + CreateCampaign + + + Grants permission to create a campaign + + Write + +

+ + campaign* + +

+
+ +
+ +

+ + aws:TagKeys + +

+

+ + aws:RequestTag/${TagKey} + +

+
+
+ + DeleteCampaign + + + Grants permission to delete a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + DeleteCampaignChannelSubtypeConfig + + + Grants permission to delete the channel subtype configuration of a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + DeleteCampaignCommunicationLimits + + + Grants permission to delete the communication limits configuration of a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + DeleteCampaignCommunicationTime + + + Grants permission to delete the communication time configuration of a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + DeleteConnectInstanceConfig + + + Grants permission to remove configuration information for an Amazon Connect instance + + Write + + + +
+ + DeleteConnectInstanceIntegration + + + Grants permission to remove integration information for an Amazon Connect instance + + Write + + + +
+ + DeleteInstanceOnboardingJob + + + Grants permission to remove onboarding job for an Amazon Connect instance + + Write + + + +
+ + DescribeCampaign + + + Grants permission to describe a specific campaign + + Read + +

+ + campaign* + +

+
+ +
+ +

+ + aws:RequestTag/${TagKey} + +

+
+
+ + GetCampaignState + + + Grants permission to get state of a campaign + + Read + +

+ + campaign* + +

+
+ +
+ +

+ + aws:RequestTag/${TagKey} + +

+
+
+ + GetCampaignStateBatch + + + Grants permission to get state of campaigns + + Read + +

+ + campaign* + +

+
+ +
+ +

+ + aws:RequestTag/${TagKey} + +

+
+
+ + GetConnectInstanceConfig + + + Grants permission to get configuration information for an Amazon Connect instance + + Read + + + +
+ + GetInstanceOnboardingJobStatus + + + Grants permission to get onboarding job status for an Amazon Connect instance + + Read + + + +
+ + ListCampaigns + + + Grants permission to provide summary of all campaigns + + List + + +

+ + aws:RequestTag/${TagKey} + +

+
+
+ + ListConnectInstanceIntegrations + + + Grants permission to provide summary of all integrations with an Amazon Connect instance + + List + + + +
+ + ListTagsForResource + + + Grants permission to list tags for a resource + + Read + +

+ + campaign + +

+
+ +
+ +

+ + aws:ResourceTag/${TagKey} + +

+
+
+ + PauseCampaign + + + Grants permission to pause a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + PutConnectInstanceIntegration + + + Grants permission to put an integration configuration with an Amazon Connect instance + + Write + + + +
+ + PutDialRequestBatch + + + Grants permission to create dial requests for the specified campaign + + Write + +

+ + campaign* + +

+
+ +
+ + PutOutboundRequestBatch + + + Grants permission to create dial requests for the specified campaign + + Write + +

+ + campaign* + +

+
+ +
+ + ResumeCampaign + + + Grants permission to resume a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + StartCampaign + + + Grants permission to start a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + StartInstanceOnboardingJob + + + Grants permission to start onboarding job for an Amazon Connect instance + + Write + + + +
+ + StopCampaign + + + Grants permission to stop a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + TagResource + + + Grants permission to tag a resource + + Tagging + +

+ + campaign* + +

+
+ +
+ +

+ + aws:TagKeys + +

+

+ + aws:RequestTag/${TagKey} + +

+
+
+ + UntagResource + + + Grants permission to untag a resource + + Tagging + +

+ + campaign* + +

+
+ +
+ +

+ + aws:TagKeys + +

+
+
+ + UpdateCampaignChannelSubtypeConfig + + + Grants permission to update the channel subtype configuration of a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + UpdateCampaignCommunicationLimits + + + Grants permission to update the communication limits configuration of a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + UpdateCampaignCommunicationTime + + + Grants permission to update the communication time configuration of a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + UpdateCampaignDialerConfig + + + Grants permission to update the dialer configuration of a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + UpdateCampaignFlowAssociation + + + Grants permission to update the flow association of a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + UpdateCampaignName + + + Grants permission to update the name of a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + UpdateCampaignOutboundCallConfig + + + Grants permission to update the outbound call configuration of a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + UpdateCampaignSchedule + + + Grants permission to update the schedule of a campaign + + Write + +

+ + campaign* + +

+
+ +
+ + UpdateCampaignSource + + + Grants permission to update the source of a campaign + + Write + +

+ + campaign* + +

+
+ +
+
+
+

+ Resource types defined by Amazon Connect Outbound Campaigns +

+

+ The following resource types are defined by this service and can be used in the + + Resource + + element of IAM permission policy statements. Each action in the + + Actions table + + identifies the resource types that can be specified with that action. A resource type can also define which condition keys you can include in a policy. These keys are displayed in the last column of the Resource types table. For details about the columns in the following table, see + + Resource types table + + . +

+
+
+ + + + + + + + + + + + + +
+ Resource types + + ARN + + Condition keys +
+ + campaign + + + + arn:$ + + { + + Partition}:connect-campaigns:$ + + { + + Region}:$ + + { + + Account}:campaign/$ + + { + + CampaignId} + + +

+ + aws:ResourceTag/${TagKey} + +

+
+
+
+

+ Condition keys for Amazon Connect Outbound Campaigns +

+

+ Amazon Connect Outbound Campaigns defines the following condition keys that can be used in the + + Condition + + element of an IAM policy. You can use these keys to further refine the conditions under which the policy statement applies. For details about the columns in the following table, see + + Condition keys table + + . +

+

+ To view the global condition keys that are available to all services, see + + Available global condition keys + + . +

+
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+ Condition keys + + Description + + Type +
+ + aws:RequestTag/${TagKey} + + + Filters access by actions based on the presence of tag key-value pairs in the request + + String +
+ + aws:ResourceTag/${TagKey} + + + Filters access by actions based on tag key-value pairs attached to the resource + + String +
+ + aws:TagKeys + + + Filters access by actions based on the presence of tag keys in the request + + ArrayOfString +
+
+
+ + + + +
+ + + + +
+ + +
+ +
+
+
+ + +
+
+
+ + +
+
+ + +
+ + diff --git a/policy_sentry/shared/data/docs/list_amazonconnectvoiceid.html b/policy_sentry/shared/data/docs/list_amazonconnectvoiceid.html index c8e6b88d..53b89928 100644 --- a/policy_sentry/shared/data/docs/list_amazonconnectvoiceid.html +++ b/policy_sentry/shared/data/docs/list_amazonconnectvoiceid.html @@ -310,7 +310,7 @@

- +
@@ -1123,7 +1123,7 @@

- +
@@ -1198,7 +1198,7 @@

- +
@@ -1285,8 +1285,8 @@

-