AWS Fundamentals Logo
AWS Fundamentals
network-firewall:*

AWS AWS Network Firewall IAM Actions

79 IAM actions for network-firewall:*

Actions

79 actions available. Filter by access level or search by name.

Filter:
ActionAccess Level
network-firewall:AcceptNetworkFirewallTransitGatewayAttachment
Write
network-firewall:AssociateAvailabilityZones
Write
network-firewall:AssociateFirewallPolicy
Permissions
network-firewall:AssociateSubnets
Write
network-firewall:AttachRuleGroupsToProxyConfiguration
Write
network-firewall:CreateFirewall
Write
network-firewall:CreateFirewallPolicy
Permissions
network-firewall:CreateProxy
Write
network-firewall:CreateProxyConfiguration
Write
network-firewall:CreateProxyRuleGroup
Write
network-firewall:CreateProxyRules
Write
network-firewall:CreateRuleGroup
Write
network-firewall:CreateTLSInspectionConfiguration
Write
network-firewall:CreateVpcEndpointAssociation
Write
network-firewall:DeleteFirewall
Write
network-firewall:DeleteFirewallPolicy
Permissions
network-firewall:DeleteNetworkFirewallTransitGatewayAttachment
Write
network-firewall:DeleteProxy
Write
network-firewall:DeleteProxyConfiguration
Write
network-firewall:DeleteProxyRuleGroup
Write
network-firewall:DeleteProxyRules
Write
network-firewall:DeleteResourcePolicy
Permissions
network-firewall:DeleteRuleGroup
Write
network-firewall:DeleteTLSInspectionConfiguration
Write
network-firewall:DeleteVpcEndpointAssociation
Write
network-firewall:DescribeFirewall
Read
network-firewall:DescribeFirewallMetadata
Read
network-firewall:DescribeFirewallPolicy
Permissions
network-firewall:DescribeFlowOperation
Read
network-firewall:DescribeLoggingConfiguration
Read
network-firewall:DescribeProxy
Read
network-firewall:DescribeProxyConfiguration
Read
network-firewall:DescribeProxyRule
Read
network-firewall:DescribeProxyRuleGroup
Read
network-firewall:DescribeResourcePolicy
Permissions
network-firewall:DescribeRuleGroup
Read
network-firewall:DescribeRuleGroupMetadata
Read
network-firewall:DescribeRuleGroupSummary
Read
network-firewall:DescribeTLSInspectionConfiguration
Read
network-firewall:DescribeVpcEndpointAssociation
Read
network-firewall:DetachRuleGroupsFromProxyConfiguration
Write
network-firewall:DisassociateAvailabilityZones
Write
network-firewall:DisassociateSubnets
Write
network-firewall:GetAnalysisReportResults
Read
network-firewall:ListAnalysisReports
List
network-firewall:ListFirewallPolicies
List
network-firewall:ListFirewalls
List
network-firewall:ListFlowOperationResults
List
network-firewall:ListFlowOperations
List
network-firewall:ListProxies
List
network-firewall:ListProxyConfigurations
List
network-firewall:ListProxyRuleGroups
List
network-firewall:ListRuleGroups
List
network-firewall:ListTagsForResource
Tagging
network-firewall:ListTLSInspectionConfigurations
List
network-firewall:ListVpcEndpointAssociations
List
network-firewall:PutResourcePolicy
Permissions
network-firewall:RejectNetworkFirewallTransitGatewayAttachment
Write
network-firewall:StartAnalysisReport
Write
network-firewall:StartFlowCapture
Write
network-firewall:StartFlowFlush
Write
network-firewall:TagResource
Tagging
network-firewall:UntagResource
Tagging
network-firewall:UpdateAvailabilityZoneChangeProtection
Write
network-firewall:UpdateFirewallAnalysisSettings
Write
network-firewall:UpdateFirewallDeleteProtection
Write
network-firewall:UpdateFirewallDescription
Write
network-firewall:UpdateFirewallEncryptionConfiguration
Write
network-firewall:UpdateFirewallPolicy
Permissions
network-firewall:UpdateFirewallPolicyChangeProtection
Permissions
network-firewall:UpdateLoggingConfiguration
Write
network-firewall:UpdateProxy
Write
network-firewall:UpdateProxyConfiguration
Write
network-firewall:UpdateProxyRule
Write
network-firewall:UpdateProxyRuleGroupPriorities
Write
network-firewall:UpdateProxyRulePriorities
Write
network-firewall:UpdateRuleGroup
Write
network-firewall:UpdateSubnetChangeProtection
Write
network-firewall:UpdateTLSInspectionConfiguration
Write

Resource Types

ARN patterns for resources in this service.

ResourceARN Pattern
${ResourceType}arn:aws:network-firewall:${Region}:${Account}:${ResourceType}/${ResourceName}

Condition Keys

Condition keys you can use in IAM policy conditions for this service.

aws:RequestTag/${TagKey}aws:ResourceTag/${TagKey}aws:TagKeys

Learn AWS the Practical Way

Our bi-weekly newsletter teaches hands-on AWS fundamentals. No certification fluff - just practical knowledge.

Subscribe to Newsletter

Learn AWS the Practical Way

Our bi-weekly newsletter teaches hands-on AWS fundamentals. No certification fluff - just practical knowledge.

Subscribe to Newsletter

Quick Facts

Total Actions79
Prefixnetwork-firewall
Resource Types1
Condition Keys3

Access Level Breakdown

Read
14
Write
42
List
11
Permissions
9
Tagging
3