AmazonRedshiftQueryEditorV2ReadWriteSharing - AWS マネージドポリシー

翻訳は機械翻訳により提供されています。提供された翻訳内容と英語版の間で齟齬、不一致または矛盾がある場合、英語版が優先します。

AmazonRedshiftQueryEditorV2ReadWriteSharing

説明: リソースの共有で Amazon Redshift クエリエディタ V2 を操作する機能を付与します。付与されたプリンシパルは、そのリソースを読み取り、書き込み、共有することができます。付与されたプリンシパルは、そのチームと共有されているリソースを読み取り、更新することができます。このポリシーは、その他の必要なサービスへのアクセス権限も付与します。これには、Amazon Redshift クラスターを一覧表示し、Secrets Manager でプリンシパルのクエリエディタ V2 AWS シークレットを管理するアクセス許可が含まれます。

AmazonRedshiftQueryEditorV2ReadWriteSharingAWS マネージドポリシー です。

このポリシーを使用すると

ユーザー、グループおよびロールに AmazonRedshiftQueryEditorV2ReadWriteSharing をアタッチできます。

ポリシーの詳細

  • タイプ: AWS 管理ポリシー

  • 作成日時: 2021 年 9 月 24 日 14:25 UTC

  • 編集日時: 2024 年 2 月 21 日 17:30 UTC

  • ARN: arn:aws:iam::aws:policy/AmazonRedshiftQueryEditorV2ReadWriteSharing

ポリシーのバージョン

ポリシーのバージョン: v9 (デフォルト)

ポリシーのデフォルトバージョンは、ポリシーのアクセス許可を定義するバージョンです。ポリシーを持つユーザーまたはロールが AWS リソースへのアクセスをリクエストすると、 はポリシーのデフォルトバージョン AWS をチェックして、リクエストを許可するかどうかを判断します。

JSON ポリシードキュメント

{ "Version" : "2012-10-17", "Statement" : [ { "Sid" : "RedshiftPermissions", "Effect" : "Allow", "Action" : [ "redshift:DescribeClusters", "redshift-serverless:ListNamespaces", "redshift-serverless:ListWorkgroups" ], "Resource" : "*" }, { "Sid" : "SecretsManagerPermissions", "Effect" : "Allow", "Action" : [ "secretsmanager:CreateSecret", "secretsmanager:GetSecretValue", "secretsmanager:DeleteSecret", "secretsmanager:TagResource" ], "Resource" : "arn:aws:secretsmanager:*:*:sqlworkbench!*", "Condition" : { "StringEquals" : { "secretsmanager:ResourceTag/sqlworkbench-resource-owner" : "${aws:userid}" } } }, { "Sid" : "ResourceGroupsTaggingPermissions", "Effect" : "Allow", "Action" : [ "tag:GetResources" ], "Resource" : "*", "Condition" : { "StringEquals" : { "aws:CalledViaLast" : "sqlworkbench.amazonaws.com" } } }, { "Sid" : "AmazonRedshiftQueryEditorV2NonResourceLevelPermissions", "Effect" : "Allow", "Action" : [ "sqlworkbench:CreateFolder", "sqlworkbench:PutTab", "sqlworkbench:BatchDeleteFolder", "sqlworkbench:DeleteTab", "sqlworkbench:GenerateSession", "sqlworkbench:GetAccountInfo", "sqlworkbench:GetAccountSettings", "sqlworkbench:GetUserInfo", "sqlworkbench:GetUserWorkspaceSettings", "sqlworkbench:PutUserWorkspaceSettings", "sqlworkbench:ListConnections", "sqlworkbench:ListFiles", "sqlworkbench:ListTabs", "sqlworkbench:UpdateFolder", "sqlworkbench:ListRedshiftClusters", "sqlworkbench:DriverExecute", "sqlworkbench:ListTaggedResources", "sqlworkbench:ListQueryExecutionHistory", "sqlworkbench:GetQueryExecutionHistory", "sqlworkbench:ListNotebooks", "sqlworkbench:GetSchemaInference", "sqlworkbench:GetAutocompletionMetadata", "sqlworkbench:GetAutocompletionResource" ], "Resource" : "*" }, { "Sid" : "AmazonRedshiftQueryEditorV2CreateOwnedResourcePermissions", "Effect" : "Allow", "Action" : [ "sqlworkbench:CreateConnection", "sqlworkbench:CreateSavedQuery", "sqlworkbench:CreateChart", "sqlworkbench:CreateNotebook", "sqlworkbench:DuplicateNotebook", "sqlworkbench:CreateNotebookFromVersion", "sqlworkbench:ImportNotebook" ], "Resource" : "*", "Condition" : { "StringEquals" : { "aws:RequestTag/sqlworkbench-resource-owner" : "${aws:userid}" } } }, { "Sid" : "AmazonRedshiftQueryEditorV2OwnerSpecificPermissions", "Effect" : "Allow", "Action" : [ "sqlworkbench:DeleteChart", "sqlworkbench:DeleteConnection", "sqlworkbench:DeleteSavedQuery", "sqlworkbench:GetChart", "sqlworkbench:GetConnection", "sqlworkbench:GetSavedQuery", "sqlworkbench:ListSavedQueryVersions", "sqlworkbench:UpdateChart", "sqlworkbench:UpdateConnection", "sqlworkbench:UpdateSavedQuery", "sqlworkbench:AssociateConnectionWithTab", "sqlworkbench:AssociateQueryWithTab", "sqlworkbench:AssociateConnectionWithChart", "sqlworkbench:AssociateNotebookWithTab", "sqlworkbench:UpdateFileFolder", "sqlworkbench:ListTagsForResource", "sqlworkbench:GetNotebook", "sqlworkbench:UpdateNotebook", "sqlworkbench:DeleteNotebook", "sqlworkbench:DuplicateNotebook", "sqlworkbench:CreateNotebookCell", "sqlworkbench:DeleteNotebookCell", "sqlworkbench:UpdateNotebookCellContent", "sqlworkbench:UpdateNotebookCellLayout", "sqlworkbench:BatchGetNotebookCell", "sqlworkbench:ListNotebookVersions", "sqlworkbench:CreateNotebookVersion", "sqlworkbench:GetNotebookVersion", "sqlworkbench:DeleteNotebookVersion", "sqlworkbench:RestoreNotebookVersion", "sqlworkbench:CreateNotebookFromVersion", "sqlworkbench:ExportNotebook", "sqlworkbench:ImportNotebook" ], "Resource" : "*", "Condition" : { "StringEquals" : { "aws:ResourceTag/sqlworkbench-resource-owner" : "${aws:userid}" } } }, { "Sid" : "AmazonRedshiftQueryEditorV2TagOnlyUserIdPermissions", "Effect" : "Allow", "Action" : "sqlworkbench:TagResource", "Resource" : "*", "Condition" : { "ForAllValues:StringEquals" : { "aws:TagKeys" : "sqlworkbench-resource-owner" }, "StringEquals" : { "aws:ResourceTag/sqlworkbench-resource-owner" : "${aws:userid}", "aws:RequestTag/sqlworkbench-resource-owner" : "${aws:userid}" } } }, { "Sid" : "AmazonRedshiftQueryEditorV2TeamReadWriteAccessPermissions", "Effect" : "Allow", "Action" : [ "sqlworkbench:GetChart", "sqlworkbench:GetConnection", "sqlworkbench:GetSavedQuery", "sqlworkbench:ListSavedQueryVersions", "sqlworkbench:ListTagsForResource", "sqlworkbench:UpdateChart", "sqlworkbench:UpdateConnection", "sqlworkbench:UpdateSavedQuery", "sqlworkbench:AssociateConnectionWithTab", "sqlworkbench:AssociateQueryWithTab", "sqlworkbench:AssociateConnectionWithChart", "sqlworkbench:AssociateNotebookWithTab", "sqlworkbench:GetNotebook", "sqlworkbench:DuplicateNotebook", "sqlworkbench:BatchGetNotebookCell", "sqlworkbench:ListNotebookVersions", "sqlworkbench:GetNotebookVersion", "sqlworkbench:CreateNotebookFromVersion", "sqlworkbench:ExportNotebook" ], "Resource" : "*", "Condition" : { "StringEquals" : { "aws:ResourceTag/sqlworkbench-team" : "${aws:PrincipalTag/sqlworkbench-team}" } } }, { "Sid" : "AmazonRedshiftQueryEditorV2TagOnlyTeamPermissions", "Effect" : "Allow", "Action" : "sqlworkbench:TagResource", "Resource" : "*", "Condition" : { "ForAllValues:StringEquals" : { "aws:TagKeys" : "sqlworkbench-team" }, "StringEquals" : { "aws:ResourceTag/sqlworkbench-resource-owner" : "${aws:userid}", "aws:RequestTag/sqlworkbench-team" : "${aws:PrincipalTag/sqlworkbench-team}" } } }, { "Sid" : "AmazonRedshiftQueryEditorV2UntagOnlyTeamPermissions", "Effect" : "Allow", "Action" : "sqlworkbench:UntagResource", "Resource" : "*", "Condition" : { "ForAllValues:StringEquals" : { "aws:TagKeys" : "sqlworkbench-team" }, "StringEquals" : { "aws:ResourceTag/sqlworkbench-resource-owner" : "${aws:userid}" } } } ] }

詳細はこちら