String key
The name of the attribute associated with your identities in your identity source. This is used to map a specified attribute in your identity source with an attribute in IAM Identity Center.
AccessControlAttributeValue value
The value used for mapping a specified attribute to an identity source.
String accountId
The identifier of the Amazon Web Services account.
String permissionSetArn
The ARN of the permission set. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String principalId
An identifier for an object in IAM Identity Center, such as a user or group. PrincipalIds are GUIDs (For example, f81d4fae-7dec-11d0-a765-00a0c91e6bf6). For more information about PrincipalIds in IAM Identity Center, see the IAM Identity Center Identity Store API Reference.
String principalType
The entity type for which the assignment will be created.
Date createdDate
The date that the permission set was created.
String failureReason
The message that contains an error or exception in case of an operation failure.
String permissionSetArn
The ARN of the permission set. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String principalId
An identifier for an object in IAM Identity Center, such as a user or group. PrincipalIds are GUIDs (For example, f81d4fae-7dec-11d0-a765-00a0c91e6bf6). For more information about PrincipalIds in IAM Identity Center, see the IAM Identity Center Identity Store API Reference.
String principalType
The entity type for which the assignment will be created.
String requestId
The identifier for tracking the request operation that is generated by the universally unique identifier (UUID) workflow.
String status
The status of the permission set provisioning process.
String targetId
TargetID is an Amazon Web Services account identifier, (For example, 123456789012).
String targetType
The entity type for which the assignment will be created.
CustomerManagedPolicyReference customerManagedPolicyReference
Specifies the name and path of a customer managed policy. You must have an IAM policy that matches the name and path in each Amazon Web Services account where you want to deploy your permission set.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed.
String permissionSetArn
The ARN of the PermissionSet.
String arn
The ARN of the Amazon Web Services managed policy. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String name
The name of the Amazon Web Services managed policy.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String managedPolicyArn
The Amazon Web Services managed policy ARN to be attached to a permission set.
String permissionSetArn
The ARN of the PermissionSet that the managed policy should be attached to.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String permissionSetArn
The ARN of the permission set that the admin wants to grant the principal access to.
String principalId
An identifier for an object in IAM Identity Center, such as a user or group. PrincipalIds are GUIDs (For example, f81d4fae-7dec-11d0-a765-00a0c91e6bf6). For more information about PrincipalIds in IAM Identity Center, see the IAM Identity Center Identity Store API Reference.
String principalType
The entity type for which the assignment will be created.
String targetId
TargetID is an Amazon Web Services account identifier, (For example, 123456789012).
String targetType
The entity type for which the assignment will be created.
AccountAssignmentOperationStatus accountAssignmentCreationStatus
The status object for the account assignment creation operation.
InstanceAccessControlAttributeConfiguration instanceAccessControlAttributeConfiguration
Specifies the IAM Identity Center identity store attributes to add to your ABAC configuration. When using an external identity provider as an identity source, you can pass attributes through the SAML assertion. Doing so provides an alternative to configuring attributes from the IAM Identity Center identity store. If a SAML assertion passes any of these attributes, IAM Identity Center will replace the attribute value with the value from the IAM Identity Center identity store.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed.
String description
The description of the PermissionSet.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String name
The name of the PermissionSet.
String relayState
Used to redirect users within the application during the federation authentication process.
String sessionDuration
The length of time that the application user sessions are valid in the ISO-8601 standard.
List<E> tags
The tags to attach to the new PermissionSet.
PermissionSet permissionSet
Defines the level of access on an Amazon Web Services account.
String name
The name of the IAM policy that you have configured in each account where you want to deploy your permission set.
String path
The path to the IAM policy that you have configured in each account where you want to deploy your permission set.
The default is /. For more information, see Friendly names and paths in the IAM User Guide.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String permissionSetArn
The ARN of the permission set that will be used to remove access.
String principalId
An identifier for an object in IAM Identity Center, such as a user or group. PrincipalIds are GUIDs (For example, f81d4fae-7dec-11d0-a765-00a0c91e6bf6). For more information about PrincipalIds in IAM Identity Center, see the IAM Identity Center Identity Store API Reference.
String principalType
The entity type for which the assignment will be deleted.
String targetId
TargetID is an Amazon Web Services account identifier, (For example, 123456789012).
String targetType
The entity type for which the assignment will be deleted.
AccountAssignmentOperationStatus accountAssignmentDeletionStatus
The status object for the account assignment deletion operation.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String permissionSetArn
The ARN of the permission set that will be used to remove access.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String permissionSetArn
The ARN of the permission set that should be deleted.
String accountAssignmentCreationRequestId
The identifier that is used to track the request operation progress.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
AccountAssignmentOperationStatus accountAssignmentCreationStatus
The status object for the account assignment creation operation.
String accountAssignmentDeletionRequestId
The identifier that is used to track the request operation progress.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
AccountAssignmentOperationStatus accountAssignmentDeletionStatus
The status object for the account assignment deletion operation.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed.
InstanceAccessControlAttributeConfiguration instanceAccessControlAttributeConfiguration
Gets the list of IAM Identity Center identity store attributes that have been added to your ABAC configuration.
String status
The status of the attribute configuration process.
String statusReason
Provides more details about the current status of the specified attribute.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String provisionPermissionSetRequestId
The identifier that is provided by the ProvisionPermissionSet call to retrieve the current status of the provisioning workflow.
PermissionSetProvisioningStatus permissionSetProvisioningStatus
The status object for the permission set provisioning operation.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String permissionSetArn
The ARN of the permission set.
PermissionSet permissionSet
Describes the level of access on an Amazon Web Services account.
CustomerManagedPolicyReference customerManagedPolicyReference
Specifies the name and path of a customer managed policy. You must have an IAM policy that matches the name and path in each Amazon Web Services account where you want to deploy your permission set.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed.
String permissionSetArn
The ARN of the PermissionSet.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String managedPolicyArn
The Amazon Web Services managed policy ARN to be detached from a permission set.
String permissionSetArn
The ARN of the PermissionSet from which the policy should be detached.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String permissionSetArn
The ARN of the permission set.
String inlinePolicy
The inline policy that is attached to the permission set.
For Length Constraints, if a valid ARN is provided for a permission set, it is possible for an empty
inline policy to be returned.
PermissionsBoundary permissionsBoundary
The permissions boundary attached to the specified permission set.
String identityStoreId
The identifier of the identity store that is connected to the IAM Identity Center instance.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
OperationStatusFilter filter
Filters results based on the passed attribute value.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
Integer maxResults
The maximum number of results to display for the assignment.
String nextToken
The pagination token for the list API. Initially the value is null. Use the output of previous API calls to make subsequent calls.
OperationStatusFilter filter
Filters results based on the passed attribute value.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
Integer maxResults
The maximum number of results to display for the assignment.
String nextToken
The pagination token for the list API. Initially the value is null. Use the output of previous API calls to make subsequent calls.
String accountId
The identifier of the Amazon Web Services account from which to list the assignments.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
Integer maxResults
The maximum number of results to display for the assignment.
String nextToken
The pagination token for the list API. Initially the value is null. Use the output of previous API calls to make subsequent calls.
String permissionSetArn
The ARN of the permission set from which to list assignments.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
Integer maxResults
The maximum number of results to display for the PermissionSet.
String nextToken
The pagination token for the list API. Initially the value is null. Use the output of previous API calls to make subsequent calls.
String permissionSetArn
The ARN of the PermissionSet from which the associated Amazon Web Services accounts will be listed.
String provisioningStatus
The permission set provisioning status for an Amazon Web Services account.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed.
Integer maxResults
The maximum number of results to display for the list call.
String nextToken
The pagination token for the list API. Initially the value is null. Use the output of previous API calls to make subsequent calls.
String permissionSetArn
The ARN of the PermissionSet.
List<E> customerManagedPolicyReferences
Specifies the names and paths of the customer managed policies that you have attached to your permission set.
String nextToken
The pagination token for the list API. Initially the value is null. Use the output of previous API calls to make subsequent calls.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
Integer maxResults
The maximum number of results to display for the PermissionSet.
String nextToken
The pagination token for the list API. Initially the value is null. Use the output of previous API calls to make subsequent calls.
String permissionSetArn
The ARN of the PermissionSet whose managed policies will be listed.
List<E> attachedManagedPolicies
An array of the AttachedManagedPolicy data type object.
String nextToken
The pagination token for the list API. Initially the value is null. Use the output of previous API calls to make subsequent calls.
OperationStatusFilter filter
Filters results based on the passed attribute value.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
Integer maxResults
The maximum number of results to display for the assignment.
String nextToken
The pagination token for the list API. Initially the value is null. Use the output of previous API calls to make subsequent calls.
String accountId
The identifier of the Amazon Web Services account from which to list the assignments.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
Integer maxResults
The maximum number of results to display for the assignment.
String nextToken
The pagination token for the list API. Initially the value is null. Use the output of previous API calls to make subsequent calls.
String provisioningStatus
The status object for the permission set provisioning operation.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
Integer maxResults
The maximum number of results to display for the assignment.
String nextToken
The pagination token for the list API. Initially the value is null. Use the output of previous API calls to make subsequent calls.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String nextToken
The pagination token for the list API. Initially the value is null. Use the output of previous API calls to make subsequent calls.
String resourceArn
The ARN of the resource with the tags to be listed.
String status
Filters the list operations result based on the status attribute.
CustomerManagedPolicyReference customerManagedPolicyReference
Specifies the name and path of a customer managed policy. You must have an IAM policy that matches the name and path in each Amazon Web Services account where you want to deploy your permission set.
String managedPolicyArn
The Amazon Web Services managed policy ARN that you want to attach to a permission set as a permissions boundary.
Date createdDate
The date that the permission set was created.
String description
The description of the PermissionSet.
String name
The name of the permission set.
String permissionSetArn
The ARN of the permission set. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String relayState
Used to redirect users within the application during the federation authentication process.
String sessionDuration
The length of time that the application user sessions are valid for in the ISO-8601 standard.
String accountId
The identifier of the Amazon Web Services account from which to list the assignments.
Date createdDate
The date that the permission set was created.
String failureReason
The message that contains an error or exception in case of an operation failure.
String permissionSetArn
The ARN of the permission set that is being provisioned. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String requestId
The identifier for tracking the request operation that is generated by the universally unique identifier (UUID) workflow.
String status
The status of the permission set provisioning process.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String permissionSetArn
The ARN of the permission set.
String targetId
TargetID is an Amazon Web Services account identifier, (For example, 123456789012).
String targetType
The entity type for which the assignment will be created.
PermissionSetProvisioningStatus permissionSetProvisioningStatus
The status object for the permission set provisioning operation.
String inlinePolicy
The inline policy to attach to a PermissionSet.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String permissionSetArn
The ARN of the permission set.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed.
String permissionSetArn
The ARN of the PermissionSet.
PermissionsBoundary permissionsBoundary
The permissions boundary that you want to attach to a PermissionSet.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String resourceArn
The ARN of the resource with the tags to be listed.
List<E> tags
A set of key-value pairs that are used to manage the resource.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String resourceArn
The ARN of the resource with the tags to be listed.
List<E> tagKeys
The keys of tags that are attached to the resource.
InstanceAccessControlAttributeConfiguration instanceAccessControlAttributeConfiguration
Updates the attributes for your ABAC configuration.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed.
String description
The description of the PermissionSet.
String instanceArn
The ARN of the IAM Identity Center instance under which the operation will be executed. For more information about ARNs, see Amazon Resource Names (ARNs) and Amazon Web Services Service Namespaces in the Amazon Web Services General Reference.
String permissionSetArn
The ARN of the permission set.
String relayState
Used to redirect users within the application during the federation authentication process.
String sessionDuration
The length of time that the application user sessions are valid for in the ISO-8601 standard.
Copyright © 2023. All rights reserved.