AWS services or capabilities described in AWS Documentation may vary by region/location. Click Getting Started with Amazon AWS to see specific differences applicable to the China (Beijing) Region.
Update-MGRFWorkspace-WorkspaceId <String>-AccountAccessType <AccountAccessType>-OrganizationRoleName <String>-PermissionType <PermissionType>-NetworkAccessControl_PrefixListId <String[]>-RemoveNetworkAccessConfiguration <Boolean>-RemoveVpcConfiguration <Boolean>-VpcConfiguration_SecurityGroupId <String[]>-StackSetName <String>-VpcConfiguration_SubnetId <String[]>-NetworkAccessControl_VpceId <String[]>-WorkspaceDataSource <String[]>-WorkspaceDescription <String>-WorkspaceName <String>-WorkspaceNotificationDestination <String[]>-WorkspaceOrganizationalUnit <String[]>-WorkspaceRoleArn <String>-Select <String>-PassThru <SwitchParameter>-Force <SwitchParameter>-ClientConfig <AmazonManagedGrafanaConfig>
Admin
and Editor
Grafana roles, use UpdatePermissions. ORGANIZATION
, you must specify which organizational units the workspace can access in the workspaceOrganizationalUnits
parameter. Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
pl-1a2b3c4d
.For more information about prefix lists, see Group CIDR blocks using managed prefix listsin the Amazon Virtual Private Cloud User Guide. Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | NetworkAccessControl_PrefixListIds |
NetworkAccessConfiguration
is specified then only VPC endpoints specified here are allowed to access the workspace. If you pass in an empty array of strings, then no VPCs are allowed to access the workspace.VPC endpoint IDs have the format vpce-1a2b3c4d
.For more information about creating an interface VPC endpoint, see Interface VPC endpoints in the Amazon Managed Grafana User Guide.The only VPC endpoints that can be specified here are interface VPC endpoints for Grafana workspaces (using the com.amazonaws.[region].grafana-workspace
service endpoint). Other VPC endpoints are ignored. Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | NetworkAccessControl_VpceIds |
permissionType
set to CUSTOMER_MANAGED
. Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
SERVICE_MANAGED
to CUSTOMER_MANAGED
. This allows you to manage the permissions that the workspace uses to access datasources and notification channels. If the workspace is in a member Amazon Web Services account of an organization, and that account is not a delegated administrator account, and you want the workspace to access data sources in other Amazon Web Services accounts in the organization, you must choose CUSTOMER_MANAGED
.If you specify this as CUSTOMER_MANAGED
, you must also specify a workspaceRoleArn
that the workspace will use for accessing Amazon Web Services resources.For more information on the role and permissions needed, see Amazon Managed Grafana permissions and policies for Amazon Web Services data sources and notification channelsDo not use this to convert a CUSTOMER_MANAGED
workspace to SERVICE_MANAGED
. Do not include this parameter if you want to leave the workspace as SERVICE_MANAGED
.You can convert a CUSTOMER_MANAGED
workspace to SERVICE_MANAGED
using the Amazon Managed Grafana console. For more information, see Managing permissions for data sources and notification channels. Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
true
and providing a networkAccessControl
to set will return an error.If you remove this configuration by setting this to true
, then all IP addresses and VPC endpoints will be allowed. Standard Grafana authentication and authorization will still be required. Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
true
and providing a vpcConfiguration
to set will return an error. Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | VpcConfiguration_SecurityGroupIds |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | VpcConfiguration_SubnetIds |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | WorkspaceDataSources |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Required? | True |
Position? | 1 |
Accept pipeline input? | True (ByValue, ByPropertyName) |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | WorkspaceNotificationDestinations |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | WorkspaceOrganizationalUnits |
permissionType
CUSTOMER_MANAGED
, then this role is required. Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | AK |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByValue, ByPropertyName) |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByValue, ByPropertyName) |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | AWSProfilesLocation, ProfilesLocation |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | StoredCredentials, AWSProfileName |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | RegionToCall |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | SK, SecretAccessKey |
Required? | False |
Position? | Named |
Accept pipeline input? | True (ByPropertyName) |
Aliases | ST |
AWS Tools for PowerShell: 2.x.y.z