本文属于机器翻译版本。若本译文内容与英语原文存在差异,则一律以英文原文为准。
AWSCodeBuildDeveloperAccess
描述: AWS CodeBuild 通过提供访问权限 AWS Management Console,但不允许 CodeBuild 项目管理。还要附上 AmazonS3 ReadOnlyAccess 以提供下载构建项目的访问权限。
AWSCodeBuildDeveloperAccess
是一项 AWS 托管式策略。
使用此策略
您可以将 AWSCodeBuildDeveloperAccess
附加到您的用户、组和角色。
策略详细信息
-
类型: AWS 托管策略
-
创建时间:2016 年 12 月 1 日 19:02 UTC
-
编辑时间:世界标准时间 2024 年 12 月 16 日 20:07
-
ARN:
arn:aws:iam::aws:policy/AWSCodeBuildDeveloperAccess
策略版本
策略版本:v16 (默认值)
此策略的默认版本是定义策略权限的版本。当使用该策略的用户或角色请求访问 AWS 资源时, AWS 会检查策略的默认版本以确定是否允许该请求。
JSON 策略文档
{
"Statement" : [
{
"Sid" : "AWSServicesAccess",
"Action" : [
"codebuild:StartBuild",
"codebuild:StopBuild",
"codebuild:StartBuildBatch",
"codebuild:StopBuildBatch",
"codebuild:RetryBuild",
"codebuild:RetryBuildBatch",
"codebuild:BatchGet*",
"codebuild:GetResourcePolicy",
"codebuild:DescribeTestCases",
"codebuild:DescribeCodeCoverages",
"codebuild:List*",
"codecommit:GetBranch",
"codecommit:GetCommit",
"codecommit:GetRepository",
"codecommit:ListBranches",
"cloudwatch:GetMetricStatistics",
"events:DescribeRule",
"events:ListTargetsByRule",
"events:ListRuleNamesByTarget",
"logs:GetLogEvents",
"s3:GetBucketLocation",
"s3:ListAllMyBuckets"
],
"Effect" : "Allow",
"Resource" : "*"
},
{
"Sid" : "SSMParameterWriteAccess",
"Effect" : "Allow",
"Action" : [
"ssm:PutParameter"
],
"Resource" : "arn:aws:ssm:*:*:parameter/CodeBuild/*"
},
{
"Sid" : "SSMStartSessionAccess",
"Effect" : "Allow",
"Action" : [
"ssm:StartSession"
],
"Resource" : "arn:aws:ecs:*:*:task/*/*"
},
{
"Sid" : "CodeStarConnectionsUserAccess",
"Effect" : "Allow",
"Action" : [
"codestar-connections:ListConnections",
"codestar-connections:GetConnection"
],
"Resource" : [
"arn:aws:codestar-connections:*:*:connection/*",
"arn:aws:codeconnections:*:*:connection/*"
]
},
{
"Sid" : "CodeStarNotificationsReadWriteAccess",
"Effect" : "Allow",
"Action" : [
"codestar-notifications:CreateNotificationRule",
"codestar-notifications:DescribeNotificationRule",
"codestar-notifications:UpdateNotificationRule",
"codestar-notifications:Subscribe",
"codestar-notifications:Unsubscribe"
],
"Resource" : "*",
"Condition" : {
"ArnLike" : {
"codestar-notifications:NotificationsForResource" : "arn:aws:codebuild:*:*:project/*"
}
}
},
{
"Sid" : "CodeStarNotificationsListAccess",
"Effect" : "Allow",
"Action" : [
"codestar-notifications:ListNotificationRules",
"codestar-notifications:ListEventTypes",
"codestar-notifications:ListTargets",
"codestar-notifications:ListTagsforResource"
],
"Resource" : "*"
},
{
"Sid" : "SNSTopicListAccess",
"Effect" : "Allow",
"Action" : [
"sns:ListTopics",
"sns:GetTopicAttributes"
],
"Resource" : "*"
},
{
"Sid" : "CodeStarNotificationsChatbotAccess",
"Effect" : "Allow",
"Action" : [
"chatbot:DescribeSlackChannelConfigurations",
"chatbot:ListMicrosoftTeamsChannelConfigurations"
],
"Resource" : "*"
}
],
"Version" : "2012-10-17"
}