本文為英文版的機器翻譯版本,如內容有任何歧義或不一致之處,概以英文版為準。
AWSEntityResolutionConsoleFullAccess
描述:提供主控台對「 AWS 實體解析」和相關服務的完整存取權。
AWSEntityResolutionConsoleFullAccess
是AWS 受管理的策略。
使用此政策
您可以附加AWSEntityResolutionConsoleFullAccess
至您的使用者、群組和角色。
政策詳情
-
類型: AWS 受管理的策略
-
創建時間:世界標準時間 2023 年 8 月 17 日, 17:54
-
編輯時間:世界標準時間 2023 年 10 月 16 日下午 18:46
-
ARN:
arn:aws:iam::aws:policy/AWSEntityResolutionConsoleFullAccess
政策版本
策略版本:v2(預設值)
原則的預設版本是定義原則權限的版本。當具有策略的使用者或角色發出要求以存取 AWS 資源時,請 AWS 檢查原則的預設版本,以決定是否允許該要求。
政策文件
{
"Version" : "2012-10-17",
"Statement" : [
{
"Sid" : "EntityResolutionAccess",
"Effect" : "Allow",
"Action" : [
"entityresolution:*"
],
"Resource" : "*"
},
{
"Sid" : "GlueSourcesConsoleDisplay",
"Effect" : "Allow",
"Action" : [
"glue:GetSchema",
"glue:SearchTables",
"glue:GetSchemaByDefinition",
"glue:GetSchemaVersion",
"glue:GetSchemaVersionsDiff",
"glue:GetDatabase",
"glue:GetDatabases",
"glue:GetTable",
"glue:GetTables",
"glue:GetTableVersion",
"glue:GetTableVersions"
],
"Resource" : "*"
},
{
"Sid" : "S3BucketsConsoleDisplay",
"Effect" : "Allow",
"Action" : [
"s3:ListAllMyBuckets"
],
"Resource" : "*"
},
{
"Sid" : "S3SourcesConsoleDisplay",
"Effect" : "Allow",
"Action" : [
"s3:ListBucket",
"s3:GetBucketLocation",
"s3:ListBucketVersions",
"s3:GetBucketVersioning"
],
"Resource" : "*"
},
{
"Sid" : "TaggingConsoleDisplay",
"Effect" : "Allow",
"Action" : [
"tag:GetTagKeys",
"tag:GetTagValues"
],
"Resource" : "*"
},
{
"Sid" : "KMSConsoleDisplay",
"Effect" : "Allow",
"Action" : [
"kms:DescribeKey",
"kms:ListAliases"
],
"Resource" : "*"
},
{
"Sid" : "ListRolesToPickRoleForPassing",
"Effect" : "Allow",
"Action" : [
"iam:ListRoles"
],
"Resource" : "*"
},
{
"Sid" : "PassRoleToEntityResolutionService",
"Effect" : "Allow",
"Action" : [
"iam:PassRole"
],
"Resource" : "arn:aws:iam::*:role/*entityresolution*",
"Condition" : {
"StringEquals" : {
"iam:PassedToService" : [
"entityresolution.amazonaws.com"
]
}
}
},
{
"Sid" : "ManageEventBridgeRules",
"Effect" : "Allow",
"Action" : [
"events:DeleteRule",
"events:PutTargets",
"events:PutRule"
],
"Resource" : [
"arn:aws:events:*:*:rule/entity-resolution-automatic*"
]
},
{
"Sid" : "ADXReadAccess",
"Effect" : "Allow",
"Action" : [
"dataexchange:GetDataSet"
],
"Resource" : "*"
}
]
}