AmazonRedshiftQueryEditorV2NoSharing - AWS Política gestionada

Las traducciones son generadas a través de traducción automática. En caso de conflicto entre la traducción y la version original de inglés, prevalecerá la version en inglés.

AmazonRedshiftQueryEditorV2NoSharing

Descripción: permite trabajar con Amazon Redshift Query Editor V2 sin compartir recursos. La entidad principal autorizada solo puede leer, actualizar y eliminar sus propios recursos, pero no puede compartirlos. Esta política también concede acceso a otros servicios requeridos. Esto incluye permisos para enumerar los clústeres de Amazon Redshift y administrar los secretos del editor de consultas V2 del director en AWS Secrets Manager.

AmazonRedshiftQueryEditorV2NoSharinges una política AWS administrada.

Uso de la política

Puede asociar AmazonRedshiftQueryEditorV2NoSharing a los usuarios, grupos y roles.

Información de la política

  • Tipo: política AWS gestionada

  • Hora de creación: 24 de septiembre de 2021 a las 14:18 UTC

  • Hora editada: 21 de febrero de 2024 a las 17:25 UTC

  • ARN: arn:aws:iam::aws:policy/AmazonRedshiftQueryEditorV2NoSharing

Versión de la política

Versión de la política: v9 (predeterminada)

La versión predeterminada de la política define qué permisos tendrá. Cuando un usuario o un rol con la política solicita el acceso a un AWS recurso, AWS comprueba la versión predeterminada de la política para determinar si permite la solicitud.

Documento de política JSON

{ "Version" : "2012-10-17", "Statement" : [ { "Sid" : "RedshiftPermissions", "Effect" : "Allow", "Action" : [ "redshift:DescribeClusters", "redshift-serverless:ListNamespaces", "redshift-serverless:ListWorkgroups" ], "Resource" : "*" }, { "Sid" : "SecretsManagerPermissions", "Effect" : "Allow", "Action" : [ "secretsmanager:CreateSecret", "secretsmanager:GetSecretValue", "secretsmanager:DeleteSecret", "secretsmanager:TagResource" ], "Resource" : "arn:aws:secretsmanager:*:*:sqlworkbench!*", "Condition" : { "StringEquals" : { "secretsmanager:ResourceTag/sqlworkbench-resource-owner" : "${aws:userid}" } } }, { "Sid" : "ResourceGroupsTaggingPermissions", "Effect" : "Allow", "Action" : [ "tag:GetResources" ], "Resource" : "*", "Condition" : { "StringEquals" : { "aws:CalledViaLast" : "sqlworkbench.amazonaws.com" } } }, { "Sid" : "AmazonRedshiftQueryEditorV2NonResourceLevelPermissions", "Effect" : "Allow", "Action" : [ "sqlworkbench:CreateFolder", "sqlworkbench:PutTab", "sqlworkbench:BatchDeleteFolder", "sqlworkbench:DeleteTab", "sqlworkbench:GenerateSession", "sqlworkbench:GetAccountInfo", "sqlworkbench:GetAccountSettings", "sqlworkbench:GetUserInfo", "sqlworkbench:GetUserWorkspaceSettings", "sqlworkbench:PutUserWorkspaceSettings", "sqlworkbench:ListConnections", "sqlworkbench:ListFiles", "sqlworkbench:ListTabs", "sqlworkbench:UpdateFolder", "sqlworkbench:ListRedshiftClusters", "sqlworkbench:DriverExecute", "sqlworkbench:ListTaggedResources", "sqlworkbench:ListQueryExecutionHistory", "sqlworkbench:GetQueryExecutionHistory", "sqlworkbench:ListNotebooks", "sqlworkbench:GetSchemaInference", "sqlworkbench:GetAutocompletionMetadata", "sqlworkbench:GetAutocompletionResource" ], "Resource" : "*" }, { "Sid" : "AmazonRedshiftQueryEditorV2CreateOwnedResourcePermissions", "Effect" : "Allow", "Action" : [ "sqlworkbench:CreateConnection", "sqlworkbench:CreateSavedQuery", "sqlworkbench:CreateChart", "sqlworkbench:CreateNotebook", "sqlworkbench:DuplicateNotebook", "sqlworkbench:CreateNotebookFromVersion", "sqlworkbench:ImportNotebook" ], "Resource" : "*", "Condition" : { "StringEquals" : { "aws:RequestTag/sqlworkbench-resource-owner" : "${aws:userid}" } } }, { "Sid" : "AmazonRedshiftQueryEditorV2OwnerSpecificPermissions", "Effect" : "Allow", "Action" : [ "sqlworkbench:DeleteChart", "sqlworkbench:DeleteConnection", "sqlworkbench:DeleteSavedQuery", "sqlworkbench:GetChart", "sqlworkbench:GetConnection", "sqlworkbench:GetSavedQuery", "sqlworkbench:ListSavedQueryVersions", "sqlworkbench:UpdateChart", "sqlworkbench:UpdateConnection", "sqlworkbench:UpdateSavedQuery", "sqlworkbench:AssociateConnectionWithTab", "sqlworkbench:AssociateQueryWithTab", "sqlworkbench:AssociateConnectionWithChart", "sqlworkbench:AssociateNotebookWithTab", "sqlworkbench:UpdateFileFolder", "sqlworkbench:ListTagsForResource", "sqlworkbench:GetNotebook", "sqlworkbench:UpdateNotebook", "sqlworkbench:DeleteNotebook", "sqlworkbench:DuplicateNotebook", "sqlworkbench:CreateNotebookCell", "sqlworkbench:DeleteNotebookCell", "sqlworkbench:UpdateNotebookCellContent", "sqlworkbench:UpdateNotebookCellLayout", "sqlworkbench:BatchGetNotebookCell", "sqlworkbench:ListNotebookVersions", "sqlworkbench:CreateNotebookVersion", "sqlworkbench:GetNotebookVersion", "sqlworkbench:DeleteNotebookVersion", "sqlworkbench:RestoreNotebookVersion", "sqlworkbench:CreateNotebookFromVersion", "sqlworkbench:ExportNotebook", "sqlworkbench:ImportNotebook" ], "Resource" : "*", "Condition" : { "StringEquals" : { "aws:ResourceTag/sqlworkbench-resource-owner" : "${aws:userid}" } } }, { "Sid" : "AmazonRedshiftQueryEditorV2TagOnlyUserIdPermissions", "Effect" : "Allow", "Action" : "sqlworkbench:TagResource", "Resource" : "*", "Condition" : { "ForAllValues:StringEquals" : { "aws:TagKeys" : "sqlworkbench-resource-owner" }, "StringEquals" : { "aws:ResourceTag/sqlworkbench-resource-owner" : "${aws:userid}", "aws:RequestTag/sqlworkbench-resource-owner" : "${aws:userid}" } } } ] }

Más información