Data retrieval APIs for AWS IAM Identity Center - AWS Online Register of Data Formats

Data retrieval APIs for AWS IAM Identity Center

AWS IAM Identity Center provides the following APIs for data retrieval.

Actions Description Access level
DescribeAccountAssignmentCreationStatusDescribe the status of the assignment creation requestRead
DescribeAccountAssignmentDeletionStatusDescribe the status of an assignment deletion requestRead
DescribeApplicationObtain information about an applicationRead
DescribeApplicationAssignmentRetrieve an application assignmentRead
DescribeApplicationProviderDescribe an application providerRead
DescribeInstanceObtain information about an identity center instanceRead
DescribeInstanceAccessControlAttributeConfigurationGet the list of attributes used by the instance for ABACRead
DescribePermissionSetDescribe a permission setRead
DescribePermissionSetProvisioningStatusDescribe the status for the given Permission Set Provisioning requestRead
DescribeRegisteredRegionsObtain the regions where your organization has enabled AWS IAM Identity CenterRead
DescribeTrustedTokenIssuerDescribe a trusted token issuer for an instanceRead
GetApplicationAccessScopeGet an access scope to an applicationRead
GetApplicationAssignmentConfigurationRead assignment configurations for an applicationRead
GetApplicationAuthenticationMethodGet an authentication method to an applicationRead
GetApplicationGrantObtain details about a grant belonging to an applicationRead
GetApplicationInstanceRetrieve details for an application instanceRead
GetApplicationSessionConfigurationGet session configuration for an applicationRead
GetApplicationTemplateRetrieve application template detailsRead
GetInlinePolicyForPermissionSetObtain the inline policy assigned to the permission setRead
GetManagedApplicationInstanceRetrieve details for an application instanceRead
GetMfaDeviceManagementForDirectoryRetrieve Mfa Device Management settings for the directoryRead
GetPermissionSetRetrieve details of a permission setRead
GetPermissionsBoundaryForPermissionSetGet permissions boundary for a permission setRead
GetProfileRetrieve a profile for an application instanceRead
GetSSOStatusCheck if AWS IAM Identity Center is enabledRead
GetSharedSsoConfigurationRetrieve shared configuration for the current SSO instanceRead
GetSsoConfigurationRetrieve configuration for the current SSO instanceRead
GetTrustRetrieve the federation trust in a target accountRead
ListAccountAssignmentCreationStatusList the status of the AWS account assignment creation requests for a specified SSO instanceList
ListAccountAssignmentDeletionStatusList the status of the AWS account assignment deletion requests for a specified SSO instanceList
ListAccountAssignmentsList the assignee of the specified AWS account with the specified permission setList
ListAccountAssignmentsForPrincipalList accounts assigned to user or groupList
ListAccountsForProvisionedPermissionSetList all the AWS accounts where the specified permission set is provisionedList
ListApplicationAccessScopesList access scopes to an applicationList
ListApplicationAssignmentsList application assignmentsList
ListApplicationAssignmentsForPrincipalList applications assigned to user or groupList
ListApplicationAuthenticationMethodsList authentication methods to an applicationList
ListApplicationGrantsList grants from an applicationList
ListApplicationInstanceCertificatesRetrieve all of the certificates for a given application instanceRead
ListApplicationInstancesRetrieve all application instancesList
ListApplicationProvidersList application providersList
ListApplicationTemplatesRetrieve all supported application templatesList
ListApplicationsRetrieve all applications associated with the instance of IAM Identity CenterList
ListCustomerManagedPolicyReferencesInPermissionSetList the customer managed policy references that are attached to a permission setList
ListDirectoryAssociationsRetrieve details about the directory connected to AWS IAM Identity CenterRead
ListInstancesList the SSO Instances that the caller has access toList
ListManagedPoliciesInPermissionSetList the AWS managed policies that are attached to a specified permission setList
ListPermissionSetProvisioningStatusList the status of the Permission Set Provisioning requests for a specified SSO instanceList
ListPermissionSetsRetrieve all permission setsList
ListPermissionSetsProvisionedToAccountList all the permission sets that are provisioned to a specified AWS accountList
ListProfileAssociationsRetrieve the directory user or group associated with the profileRead
ListProfilesRetrieve all profiles for an application instanceList
ListTagsForResourceList the tags that are attached to a specified resourceRead
ListTrustedTokenIssuersList trusted token issuers for an instanceList
SearchGroupsSearch for groups within the associated directoryRead
SearchUsersSearch for users within the associated directoryRead