Amazon CloudWatch Logs
(logs)
IAM Changes
Services
2025-12-06
2025-12-06
10 new actions
Additions
Actions
AssociateSourceToS3TableIntegration
Description:
Grants permission to associate a log source to an S3 Tables integration
Access:
Write
DeletePipelineRule
Description:
Grants permission to delete telemetry pipeline
Access:
Write
DisassociateSourceFromS3TableIntegration
Description:
Grants permission to disassociate a log source from an S3 Tables integration
Access:
Write
GetLogFields
Description:
Grants permission to retrieve a list of log fields for a data source
Access:
Read
IntegrateWithS3Table
Description:
Grants permission to deliver log events to S3 Tables
Access:
Write
Resources:
Name: log-group
Required: Yes
ListAggregateLogGroupSummaries
Description:
Grants permission to return an aggregate summary of all log groups in the region grouped by specified data-source characteristics
Access:
List
ListSourcesForS3TableIntegration
Description:
Grants permission to return all log sources associated with an S3 Tables integration
Access:
List
ProcessWithPipeline
Description:
Grants permission to process and transform log events through pipeline transformers before storage
Access:
Write
Resources:
Name: log-group
Required: Yes
PutLogGroupDeletionProtection
Description:
Grants permission to enable or disable deletion protection for the specified log group
Access:
Write
Resources:
Name: log-group
Required: Yes
PutPipelineRule
Description:
Grants permission to create telemetry pipeline
Access:
Write