AWS::IAM::ManagedPolicyCreates a new managed policy for your AWS-account. This operation creates a policy version with a version identifier of v1 and sets v1 as the policy's default version. For more information about policy versions, see [Versioning for managed policies](https://docs.aws.amazon.com/IAM/latest/UserGuide/policies-managed-versions.html) in the *IAM User Guide*. As a best practice, you can validate your IAM policies. To learn more, see [Validating IAM policies](https://docs.aws.amazon.com/IAM/la...
7 configurable properties. 1 required. Click a row to see details.
| Property | Type | Flags |
|---|---|---|
PolicyDocument | objectstring | Required |
Description | string | Create-only |
Groups | Array<string> | |
ManagedPolicyName | string | Create-only |
Path | string | Create-only |
Roles | Array<string> | |
Users | Array<string> |
Values returned after the resource is created. Access these with Fn::GetAtt.
| Attribute | Type | Description |
|---|---|---|
AttachmentCount | integer | - |
CreateDate | string | - |
DefaultVersionId | string | - |
IsAttachable | boolean | - |
PermissionsBoundaryUsageCount | integer | - |
PolicyArn | string | - |
PolicyId | string | - |
UpdateDate | string | - |
A minimal template with required properties and common optional ones.
AWSTemplateFormatVersion: "2010-09-09"
Description: Sample template for AWS::IAM::ManagedPolicy
Resources:
MyResource:
Type: AWS::IAM::ManagedPolicy
Properties:
PolicyDocument: "value"
Description: !Ref "AWS::StackName"Permissions CloudFormation needs in your IAM role to manage this resource.
iam:CreatePolicyiam:AttachGroupPolicyiam:AttachUserPolicyiam:AttachRolePolicyiam:GetPolicyiam:ListEntitiesForPolicyiam:GetPolicyVersioniam:DetachRolePolicyiam:GetPolicyiam:ListPolicyVersionsiam:DetachGroupPolicyiam:DetachUserPolicyiam:CreatePolicyVersioniam:DeletePolicyVersioniam:AttachGroupPolicyiam:DetachRolePolicyiam:GetPolicyiam:ListPolicyVersionsiam:DetachGroupPolicyiam:DetachUserPolicyiam:DeletePolicyVersioniam:DeletePolicyiam:ListEntitiesForPolicyiam:ListPoliciesEverything you need to know about IAM on one page. HD quality, print-friendly.
Download Free InfographicPolicyArnThese properties cannot be changed after the resource is created. Updating them triggers a replacement.
ManagedPolicyNameDescriptionPath