Amazon EC2 (ec2)

2022-01-12

5 new actions | 2 updated actions

Additions

    Actions
  • DescribeFastLaunchImages
    • Description:  Grants permission to describe fast-launch enabled Windows AMIs
    • Access:  Read
    • Resources: 

      Name: image

      Required: No

    • Conditions: 

      aws:ResourceTag/${TagKey}

      ec2:ImageType

      ec2:Owner

      ec2:Public

      ec2:Region

      ec2:ResourceTag/${TagKey}

      ec2:RootDeviceType

  • DisableFastLaunch
    • Description:  Grants permission to disable faster launching for Windows AMIs
    • Access:  Write
    • Resources: 

      Name: image

      Required: No

    • Conditions: 

      aws:ResourceTag/${TagKey}

      ec2:ImageType

      ec2:Owner

      ec2:Public

      ec2:Region

      ec2:ResourceTag/${TagKey}

      ec2:RootDeviceType

  • EnableFastLaunch
    • Description:  Grants permission to enable faster launching for Windows AMIs
    • Access:  Write
    • Resources: 

      Name: image

      Required: No

      Name: launch-template

      Required: No

    • Conditions: 

      aws:ResourceTag/${TagKey}

      ec2:ImageType

      ec2:Owner

      ec2:Public

      ec2:Region

      ec2:ResourceTag/${TagKey}

      ec2:RootDeviceType

  • ModifyPrivateDnsNameOptions
    • Description:  Grants permission to modify the options for instance hostnames for the specified instance
    • Access:  Write
    • Resources: 

      Name: instance

      Required: Yes

    • Conditions: 

      aws:ResourceTag/${TagKey}

      ec2:Attribute/${AttributeName}

      ec2:AvailabilityZone

      ec2:EbsOptimized

      ec2:InstanceMarketType

      ec2:InstanceProfile

      ec2:InstanceType

      ec2:MetadataHttpEndpoint

      ec2:MetadataHttpPutResponseHopLimit

      ec2:MetadataHttpTokens

      ec2:NewInstanceProfile

      ec2:PlacementGroup

      ec2:Region

      ec2:ResourceTag/${TagKey}

      ec2:RootDeviceType

      ec2:Tenancy

  • ModifyVpcEndpointServicePayerResponsibility
    • Description:  Grants permission to modify the payer responsibility for a VPC endpoint service
    • Access:  Write
    • Resources: 

      Name: vpc-endpoint-service

      Required: Yes

    • Conditions: 

      aws:ResourceTag/${TagKey}

      ec2:Attribute/${AttributeName}

      ec2:Region

      ec2:ResourceTag/${TagKey}

Updates