AWS::VerifiedPermissions::PolicyStoreRepresents a policy store that you can place schema, policies, and policy templates in to validate authorization requests
6 configurable properties. 1 required. Click a row to see details.
| Property | Type | Flags |
|---|---|---|
ValidationSettings | ValidationSettings | Required |
DeletionProtection | DeletionProtection | |
Description | string | |
EncryptionSettings | EncryptionSettings | Write-only |
Schema | SchemaDefinition | |
Tags | Array<Tag> |
Values returned after the resource is created. Access these with Fn::GetAtt.
| Attribute | Type | Description |
|---|---|---|
Arn | string | - |
EncryptionState | object | object | - |
PolicyStoreId | string | - |
A minimal template with required properties and common optional ones.
AWSTemplateFormatVersion: "2010-09-09"
Description: Sample template for AWS::VerifiedPermissions::PolicyStore
Resources:
MyResource:
Type: AWS::VerifiedPermissions::PolicyStore
Properties:
ValidationSettings: "my-validationsettings"
Tags:
- Key: Environment
Value: Production
Description: !Ref "AWS::StackName"Permissions CloudFormation needs in your IAM role to manage this resource.
verifiedpermissions:CreatePolicyStoreverifiedpermissions:TagResourceverifiedpermissions:GetPolicyStoreverifiedpermissions:PutSchemakms:Decryptkms:DescribeKeykms:Encryptkms:GenerateDataKeyWithoutPlaintextverifiedpermissions:GetPolicyStoreverifiedpermissions:ListTagsForResourceverifiedpermissions:GetSchemaverifiedpermissions:UpdatePolicyStoreverifiedpermissions:GetPolicyStoreverifiedpermissions:TagResourceverifiedpermissions:UntagResourceverifiedpermissions:GetSchemaverifiedpermissions:PutSchemakms:Decryptverifiedpermissions:DeletePolicyStoreverifiedpermissions:GetPolicyStoreverifiedpermissions:ListPolicyStoresverifiedpermissions:GetPolicyStoreverifiedpermissions:GetSchemaOur bi-weekly newsletter teaches hands-on AWS fundamentals. No certification fluff - just practical knowledge.
Subscribe to NewsletterPolicyStoreId