AWS CloudFormation
User Guide (API Version 2010-05-15)
« PreviousNext »
View the PDF for this guide.Go to the AWS Discussion Forum for this product.Go to the Kindle Store to download this guide in Kindle format.Did this page help you?  Yes | No |  Tell us about it...

AWS::IAM::Group

The AWS::IAM::Group type creates an Identity and Access Management (IAM) group.

This type supports updates. For more information about updating stacks, see AWS CloudFormation Stacks Updates.

Syntax

{
   "Type": "AWS::IAM::Group",
   "Properties": {
      "Path": String,
      "Policies": [ Policies, ... ]
   }
}     

Properties

Path

The path to the group. For more information about paths, see Identifiers for IAM Entities in Using IAM.

Required: No

Type: String

Update requires: No interruption

Policies

The policies to associate with this group. For information about policies, see Overview of Policies in Using IAM.

Required: No

Type: List of IAM Policies

Update requires: No interruption

Return Values

Ref

Specifying this resource ID to the intrinsic Ref function will return the GroupName. For example: mystack-mygroup-1DZETITOWEKVO.

For more information about using the Ref function, see Ref.

Fn::GetAtt

Fn::GetAtt returns a value for a specified attribute of this type. This section lists the available attributes and corresponding return values.

Arn

Returns the Amazon Resource Name (ARN) for the AWS::IAM::Group resource. For example: arn:aws:iam::123456789012:group/mystack-mygroup-1DZETITOWEKVO.

For more information about using Fn:GetAtt, see Fn::GetAtt.

Template Examples

To view AWS::IAM::Group snippets, see Declaring an IAM Group Resource