Amazon Web Services (AWS) resource-based policies are policies that control access to AWS resources. Resource-based policies are JSON documents that are attached to a specific AWS resource, such as an Amazon S3 bucket or an Amazon SNS topic. The policies specify the actions that are allowed or denied on the resource and the conditions under which those actions are allowed or denied.
Resource-based policies can be used to restrict access to AWS resources to specific AWS accounts, users, or roles, or to restrict access based on the origin of the request, the time of the request, or the values of specific request parameters. For example, you can use a resource-based policy to restrict access to an Amazon S3 bucket to only specific AWS accounts, or to only allow access to an Amazon SNS topic from a specific Amazon EC2 instance.
By using resource-based policies, you can ensure that your AWS resources are only accessed by authorized users or applications, and you can also control the way that users or applications access your resources.
A resource-based policy is a JSON document that consists of the following elements:
"Version" - The version of the policy language being used. Currently, the only supported version is "2012-10-17".
"Statement" - An array of policy statements. Each policy statement defines a set of permissions for an AWS resource.
A policy statement consists of the following elements:
"Sid" (optional) - A string that provides a unique identifier for the policy statement.
"Effect" - Specifies whether the policy statement allows or denies access to the AWS resource. The possible values are "Allow" and "Deny".
"Principal" - Specifies the AWS accounts, AWS IAM users, or AWS IAM roles that are allowed or denied access to the AWS resource.
"Action" - Specifies the AWS service actions that are allowed or denied on the AWS resource.
"Resource" (optional) - Specifies the Amazon Resource Name (ARN) of the AWS resource that the policy statement applies to.
"Condition" (optional) - Specifies conditions under which the policy statement takes effect. For example, you can specify conditions based on the time of day, the source IP address, or the values of specific request parameters.
Learn more at: https://www.xashyinc.com/
Follow us at
LinkedIn: / xash. .
LinkedIn: / xas. .
Facebook: / xashyinc
Instagram: / xashyinc_te. .
Twitter: / xashyinc
Pinterest: / xashyincclo. .
Tumblr: https://www.tumblr.com/blog/xashyinc
Minds: https://www.minds.com/xashyinc/
#whatisiam #identityandaccessmanagementforbeginners #iamforbeginners #identityandaccessmanagement #iam #awsiamtutorial #awsiam #AWS #AWSTraining #iam #tech #iam #cloudcomputingcourse