Select your cookie preferences

We use essential cookies and similar tools that are necessary to provide our site and services. We use performance cookies to collect anonymous statistics, so we can understand how customers use our site and make improvements. Essential cookies cannot be deactivated, but you can choose “Customize” or “Decline” to decline performance cookies.

If you agree, AWS and approved third parties will also use cookies to provide useful site features, remember your preferences, and display relevant content, including relevant advertising. To accept or decline all non-essential cookies, choose “Accept” or “Decline.” To make more detailed choices, choose “Customize.”

Use AttachGroupPolicy with a CLI

Focus mode
Use AttachGroupPolicy with a CLI - AWS Identity and Access Management

The following code examples show how to use AttachGroupPolicy.

CLI
AWS CLI

To attach a managed policy to an IAM group

The following attach-group-policy command attaches the AWS managed policy named ReadOnlyAccess to the IAM group named Finance.

aws iam attach-group-policy \ --policy-arn arn:aws:iam::aws:policy/ReadOnlyAccess \ --group-name Finance

This command produces no output.

For more information, see Managed policies and inline policies in the AWS IAM User Guide.

PowerShell
Tools for PowerShell

Example 1: This example attaches the customer managed policy named TesterPolicy to the IAM group Testers. The users in that group are immediately affected by the permissions defined in the default version of that policy.

Register-IAMGroupPolicy -GroupName Testers -PolicyArn arn:aws:iam::123456789012:policy/TesterPolicy

Example 2: This example attaches the AWS managed policy named AdministratorAccess to the IAM group Admins. The users in that group are immediately affected by the permissions defined in the latest version of that policy.

Register-IAMGroupPolicy -GroupName Admins -PolicyArn arn:aws:iam::aws:policy/AdministratorAccess
  • For API details, see AttachGroupPolicy in AWS Tools for PowerShell Cmdlet Reference.

AWS CLI

To attach a managed policy to an IAM group

The following attach-group-policy command attaches the AWS managed policy named ReadOnlyAccess to the IAM group named Finance.

aws iam attach-group-policy \ --policy-arn arn:aws:iam::aws:policy/ReadOnlyAccess \ --group-name Finance

This command produces no output.

For more information, see Managed policies and inline policies in the AWS IAM User Guide.

For a complete list of AWS SDK developer guides and code examples, see Using this service with an AWS SDK. This topic also includes information about getting started and details about previous SDK versions.

PrivacySite termsCookie preferences
© 2025, Amazon Web Services, Inc. or its affiliates. All rights reserved.