View a markdown version of this page

Actions, resources, and condition keys for AWS service providing managed private networks - Service Authorization Reference

Actions, resources, and condition keys for AWS service providing managed private networks

AWS service providing managed private networks (service prefix: private-networks) provides the following service-specific operations, resources, actions, and condition keys for use in IAM permission policies.

References:

Actions defined by AWS service providing managed private networks

You can specify the following actions in the Action element of an IAM policy statement. Use policies to grant permissions to perform an operation in AWS. When you use an action in a policy, you usually allow or deny access to the API operation or CLI command with the same name. However, in some cases, a single action controls access to more than one operation. Alternatively, some operations require several different actions.

Actions Description Resource types (*required) Condition keys Access level

AcknowledgeOrderReceipt

Grants permission to acknowledge that an order has been received

order*

aws:ResourceTag/${TagKey}

Write

ActivateDeviceIdentifier

Grants permission to activate a device identifier

device-identifier*

aws:ResourceTag/${TagKey}

Write

ActivateNetworkSite

Grants permission to activate a network site

network-site*

aws:RequestTag/${TagKey}

aws:ResourceTag/${TagKey}

aws:TagKeys

Write

order*

aws:RequestTag/${TagKey}

aws:ResourceTag/${TagKey}

aws:TagKeys

ConfigureAccessPoint

Grants permission to configure an access point

network-resource*

aws:ResourceTag/${TagKey}

Write

CreateNetwork

Grants permission to create a network

network*

aws:RequestTag/${TagKey}

aws:ResourceTag/${TagKey}

aws:TagKeys

Write

CreateNetworkSite

Grants permission to create a network site

network*

aws:RequestTag/${TagKey}

aws:ResourceTag/${TagKey}

aws:TagKeys

Write

DeactivateDeviceIdentifier

Grants permission to deactivate a device identifier

device-identifier*

aws:ResourceTag/${TagKey}

Write

DeleteNetwork

Grants permission to delete a network

network*

aws:ResourceTag/${TagKey}

Write

DeleteNetworkSite

Grants permission to delete a network site

network-site*

aws:ResourceTag/${TagKey}

Write

GetDeviceIdentifier