Amazon Kendra Intelligent Ranking (kendra-ranking)

2023-01-11

9 new actions, 1 new resource, 3 new conditions

Additions

    Actions
  • CreateRescoreExecutionPlan
    • Description:  Grants permission to create a RescoreExecutionPlan
    • Access:  Write
    • Conditions: 

      aws:RequestTag/${TagKey}

      aws:TagKeys

  • DeleteRescoreExecutionPlan
    • Description:  Grants permission to delete a RescoreExecutionPlan
    • Access:  Write
    • Resources: 

      Name: rescore-execution-plan

      Required: Yes

  • DescribeRescoreExecutionPlan
    • Description:  Grants permission to describe a RescoreExecutionPlan
    • Access:  Read
    • Resources: 

      Name: rescore-execution-plan

      Required: Yes

  • ListRescoreExecutionPlans
    • Description:  Grants permission to list all RescoreExecutionPlans
    • Access:  List
  • ListTagsForResource
    • Description:  Grants permission to list tags for a resource
    • Access:  Read
    • Resources: 

      Name: rescore-execution-plan

      Required: No

  • Rescore
    • Description:  Grants permission to Rescore documents with Kendra Intelligent Ranking
    • Access:  Read
    • Resources: 

      Name: rescore-execution-plan

      Required: Yes

  • TagResource
    • Description:  Grants permission to tag a resource with given key value pairs
    • Access:  Tagging
    • Resources: 

      Name: rescore-execution-plan

      Required: No

    • Conditions: 

      aws:RequestTag/${TagKey}

      aws:TagKeys

  • UntagResource
    • Description:  Grants permission to remove the tag with the given key from a resource
    • Access:  Tagging
    • Resources: 

      Name: rescore-execution-plan

      Required: No

    • Conditions: 

      aws:TagKeys

  • UpdateRescoreExecutionPlan
    • Description:  Grants permission to update a RescoreExecutionPlan
    • Access:  Write
    • Resources: 

      Name: rescore-execution-plan

      Required: Yes

    Resources
  • rescore-execution-plan
    • Arn:  arn:${Partition}:kendra-ranking:${Region}:${Account}:rescore-execution-plan/${RescoreExecutionPlanId}
    • Conditions: 

      aws:ResourceTag/${TagKey}

    Conditions
  • aws:RequestTag/${TagKey}
    • Description:  Filters access by the tags that are passed in the request
    • Type:  String
  • aws:ResourceTag/${TagKey}
    • Description:  Filters access by the tags associated with the resource
    • Type:  String
  • aws:TagKeys
    • Description:  Filters access by the tag keys that are passed in the request
    • Type:  ArrayOfString