Skip to content

Latest commit

 

History

History
67 lines (67 loc) · 13.7 KB

redshift.md

File metadata and controls

67 lines (67 loc) · 13.7 KB
Action Description Resource Condition
redshift:AuthorizeClusterSecurityGroupIngress ??? arn:aws:redshift:$region:$account-id:securitygroup:$security-group-name -
redshift:AuthorizeSnapshotAccess ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name -
redshift:AuthorizeSnapshotAccess ??? arn:aws:redshift:$region:$account-id:snapshot:$cluster-name/$snapshot-name -
redshift:CancelQuerySession ??? ??? ???
redshift:CopyClusterSnapshot ??? arn:aws:redshift:$region:$account-id:snapshot:$cluster-name/$source-snapshot-name, arn:aws:redshift:$region:$account-id:snapshot:$cluster-name/$target-snapshot-name -
redshift:CreateCluster ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name redshift:RequestTag
redshift:CreateClusterParameterGroup ??? arn:aws:redshift:$region:$account-id:parametergroup:$parameter-group-name redshift:RequestTag
redshift:CreateClusterSecurityGroup ??? arn:aws:redshift:$region:$account-id:securitygroup:$security-group-name redshift:RequestTag
redshift:CreateClusterSnapshot ??? arn:aws:redshift:$region:$account-id:snapshot:$cluster-name/$snapshot-name redshift:RequestTag
redshift:CreateClusterSubnetGroup ??? arn:aws:redshift:$region:$account-id:subnetgroup:$subnet-group-name redshift:RequestTag
redshift:CreateEventSubscription ??? arn:aws:redshift:$region:$account-id:eventsubscription:$event-subscription-name -
redshift:CreateHsmClientCertificate ??? arn:aws:redshift:$region:$account-id:hsmclientcertificate:$hsm-client-certificate-id redshift:RequestTag
redshift:CreateHsmConfiguration ??? arn:aws:redshift:$region:$account-id:hsmconfiguration:$hsm-configuration-id redshift:RequestTag
redshift:CreateSnapshotCopyGrant ??? arn:aws:redshift:$region:$account-id:snapshotcopygrant:$snapshot-copy-grant-name redshift:RequestTag
redshift:CreateTags ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name, arn:aws:redshift:$region:$account-id:securitygroup:$security-group-name, arn:aws:redshift:$region:$account-id:hsmclientcertificate:$hsm-client-certificate-id, arn:aws:redshift:$region:$account-id:hsmconfiguration:$hsm-configuration-id, arn:aws:redshift:$region:$account-id:parametergroup:$parameter-group-name, arn:aws:redshift:$region:$account-id:snapshot:$cluster-name/$snapshot-name, arn:aws:redshift:$region:$account-id:snapshotcopygrant:$snapshot-copy-grant-name, arn:aws:redshift:$region:$account-id:subnetgroup:$subnet-group-name redshift:RequestTag
redshift:DeleteCluster ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name redshift:ResourceTag
redshift:DeleteClusterParameterGroup ??? arn:aws:redshift:$region:$account-id:parametergroup:$parameter-group-name redshift:ResourceTag
redshift:DeleteClusterSecurityGroup ??? arn:aws:redshift:$region:$account-id:securitygroup:$security-group-name redshift:ResourceTag
redshift:DeleteClusterSnapshot ??? arn:aws:redshift:$region:$account-id:snapshot:$cluster-name/$snapshot-name redshift:ResourceTag
redshift:DeleteClusterSubnetGroup ??? arn:aws:redshift:$region:$account-id:subnetgroup:$subnet-group-name redshift:ResourceTag
redshift:DeleteEventSubscription ??? arn:aws:redshift:$region:$account-id:eventsubscription:$event-subscription-name -
redshift:DeleteHsmClientCertificate ??? arn:aws:redshift:$region:$account-id:hsmclientcertificate:$hsm-client-certificate-id redshift:ResourceTag
redshift:DeleteHsmConfiguration ??? arn:aws:redshift:$region:$account-id:hsmconfiguration:$hsm-configuration-id redshift:ResourceTag
redshift:DeleteTags ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name, arn:aws:redshift:$region:$account-id:securitygroup:$security-group-name, arn:aws:redshift:$region:$account-id:hsmclientcertificate:$hsm-client-certificate-id, arn:aws:redshift:$region:$account-id:hsmconfiguration:$hsm-configuration-id, arn:aws:redshift:$region:$account-id:parametergroup:$parameter-group-name, arn:aws:redshift:$region:$account-id:snapshot:$cluster-name/$snapshot-name, arn:aws:redshift:$region:$account-id:snapshotcopygrant:$snapshot-copy-grant-name, arn:aws:redshift:$region:$account-id:subnetgroup:$subnet-group-name redshift:ResourceTag
redshift:DeleteCluster ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name redshift:ResourceTag
redshift:DescribeClusterParameterGroups ??? * redshift:ResourceTag
redshift:DescribeClusterParameters ??? arn:aws:redshift:$region:$account-id:parametergroup:$parameter-group-name -
redshift:DescribeClusterSecurityGroups ??? * -
redshift:DescribeClusterSnapshots ??? * -
redshift:DescribeClusterSubnetGroups ??? * -
redshift:DescribeClusterVersions ??? * -
redshift:DescribeClusters ??? * -
redshift:DescribeDefaultClusterParameters ??? * -
redshift:DescribeEventCategories ??? * -
redshift:DescribeEventSubscriptions ??? * -
redshift:DescribeEvents ??? * -
redshift:DescribeHsmClientCertificates ??? * -
redshift:DescribeHsmConfigurations ??? * -
redshift:DescribeLoggingStatus ??? * -
redshift:DescribeOrderableClusterOptions ??? * -
redshift:DescribeReservedNodeOfferings ??? * -
redshift:DescribeReservedNodes ??? * -
redshift:DescribeResize ??? * -
redshift:DescribeSnapshotCopyGrants ??? * -
redshift:DescribeTableRestoreStatus ??? * -
redshift:DescribeTags ??? * -
redshift:DisableLogging ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name redshift:ResourceTag
redshift:DisableSnapshotCopy ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name redshift:ResourceTag
redshift:EnableLogging ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name redshift:ResourceTag
redshift:EnableSnapshotCopy ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name redshift:ResourceTag
redshift:ModifyCluster ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name redshift:ResourceTag
redshift:ModifyClusterIamRoles ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name redshift:ResourceTag
redshift:ModifyClusterParameterGroup ??? arn:aws:redshift:$region:$account-id:parametergroup:$parameter-group-name redshift:ResourceTag
redshift:ModifyClusterSubnetGroup ??? arn:aws:redshift:$region:$account-id:subnetgroup:$subnet-group-name redshift:ResourceTag
redshift:ModifyEventSubscription ??? arn:aws:redshift:$region:$account-id:eventsubscription:$event-subscription-name redshift:ResourceTag
redshift:ModifySnapshotCopyRetentionPeriod ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name redshift:ResourceTag
redshift:PurchaseReservedNodeOffering ??? * -
redshift:RebootCluster ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name redshift:ResourceTag
redshift:ResetClusterParameterGroup ??? arn:aws:redshift:$region:$account-id:parametergroup:$parameter-group-name redshift:ResourceTag
redshift:RestoreFromClusterSnapshot ??? arn:aws:redshift:$region:$account-id:cluster:$target-cluster-name, arn:aws:redshift:$region:$account-id:snapshot:$snapshot-cluster-name/$snapshot-name redshift:ResourceTag
redshift:RestoreTableFromClusterSnapshot  arn:aws:redshift:$region:$account-id:snapshot:$cluster-name/$snapshot-name redshift:ResourceTag
redshift:RevokeClusterSecurityGroupIngress ??? arn:aws:redshift:$region:$account-id:securitygroup:$security-group-name redshift:ResourceTag
redshift:RevokeSnapshotAccess ??? arn:aws:redshift:$region:$account-id:snapshot:$cluster-name/$snapshot-name redshift:ResourceTag
redshift:RotateEncryptionKey ??? arn:aws:redshift:$region:$account-id:cluster:$cluster-name redshift:ResourceTag
redshift:ViewQueriesInConsole ??? ??? ???