View a markdown version of this page

Actions, resources, and condition keys for AWS Mainframe Modernization Service - Service Authorization Reference

Actions, resources, and condition keys for AWS Mainframe Modernization Service

AWS Mainframe Modernization Service (service prefix: m2) provides the following service-specific operations, resources, actions, and condition keys for use in IAM permission policies.

References:

API operations defined by AWS Mainframe Modernization Service

The following table maps API operations to the IAM actions they authorize. Only condition keys that have static values for the given API and action are listed; for the full set of condition keys supported by each action, see the Actions table.

Operation IAM action Condition key Possible value(s) Access level

CancelBatchJobExecution

m2:CancelBatchJobExecution

Write

CreateApplication

m2:CreateApplication

Write

m2:TagResource

Tagging, Write

iam:PassRole

iam:PassedToService

m2.amazonaws.com

Write

CreateDataSetExportTask

m2:CreateDataSetExportTask

Write

CreateDataSetImportTask

m2:CreateDataSetImportTask

Write

CreateDeployment

m2:CreateDeployment

Write

CreateEnvironment

m2:CreateEnvironment

Write

m2:TagResource

Tagging, Write

DeleteApplication

m2:DeleteApplication

Write

DeleteApplicationFromEnvironment

m2:DeleteApplicationFromEnvironment

Write

DeleteEnvironment

m2:DeleteEnvironment

Write

GetApplication

m2:GetApplication

Read

GetApplicationVersion

m2:GetApplicationVersion

Read

GetBatchJobExecution

m2:GetBatchJobExecution

Read

GetDataSetDetails

m2:GetDataSetDetails

Read

GetDataSetExportTask

m2:GetDataSetExportTask

Read

GetDataSetImportTask

m2:GetDataSetImportTask

Read

GetDeployment

m2:GetDeployment

Read

GetEnvironment

m2:GetEnvironment

Read

GetSignedBluinsightsUrl

m2:GetSignedBluinsightsUrl

Read

ListApplicationVersions

m2:ListApplicationVersions

Read

ListApplications

m2:ListApplications

List

ListBatchJobDefinitions

m2:ListBatchJobDefinitions

Read

ListBatchJobExecutions

m2:ListBatchJobExecutions

Read

ListBatchJobRestartPoints

m2:ListBatchJobRestartPoints

Read

ListDataSetExportHistory

m2:ListDataSetExportHistory

Read

ListDataSetImportHistory

m2:ListDataSetImportHistory

Read

ListDataSets

m2:ListDataSets

Read

ListDeployments

m2:ListDeployments

Read

ListEngineVersions

m2:ListEngineVersions

Read

ListEnvironments

m2:ListEnvironments

List

ListTagsForResource

m2:ListTagsForResource

Read

StartApplication

m2:StartApplication

Write

StartBatchJob

m2:StartBatchJob

Write

StopApplication

m2:StopApplication

Write

TagResource

m2:TagResource

Tagging, Write

UntagResource

m2:UntagResource

Tagging, Write

UpdateApplication

m2:UpdateApplication

Write

UpdateEnvironment

m2:UpdateEnvironment

Write

Actions defined by AWS Mainframe Modernization Service

You can specify the following actions in the Action element of an IAM policy statement. Use policies to grant permissions to perform an operation in AWS. When you use an action in a policy, you usually allow or deny access to the API operation or CLI command with the same name. However, in some cases, a single action controls access to more than one operation. Alternatively, some operations require several different actions.

Actions Description