Skip to main content

verified_access_instance

Gets or updates an individual verified_access_instance resource, use verified_access_instances to retrieve a list of resources or to create or delete a resource.

Overview

Nameverified_access_instance
TypeResource
DescriptionThe AWS::EC2::VerifiedAccessInstance resource creates an AWS EC2 Verified Access Instance.
Idaws.ec2.verified_access_instance

Fields

NameDatatypeDescription
verified_access_instance_idstringThe ID of the AWS Verified Access instance.
verified_access_trust_providersarrayAWS Verified Access trust providers.
verified_access_trust_provider_idsarrayThe IDs of the AWS Verified Access trust providers.
creation_timestringTime this Verified Access Instance was created.
last_updated_timestringTime this Verified Access Instance was last updated.
descriptionstringA description for the AWS Verified Access instance.
logging_configurationsobjectThe configuration options for AWS Verified Access instances.
tagsarrayAn array of key-value pairs to apply to this resource.
fips_enabledbooleanIndicates whether FIPS is enabled
regionstringAWS region.

Methods

NameAccessible byRequired Params
update_resourceUPDATEdata__Identifier, data__PatchDocument, region
get_resourceSELECTdata__Identifier, region

SELECT Example

SELECT
region,
verified_access_instance_id,
verified_access_trust_providers,
verified_access_trust_provider_ids,
creation_time,
last_updated_time,
description,
logging_configurations,
tags,
fips_enabled
FROM aws.ec2.verified_access_instance
WHERE region = 'us-east-1' AND data__Identifier = '<VerifiedAccessInstanceId>';

Permissions

To operate on the verified_access_instance resource, the following permissions are required:

Read

ec2:DescribeVerifiedAccessInstances,
ec2:DescribeVerifiedAccessInstanceLoggingConfigurations,
ec2:DescribeTags,
logs:GetLogDelivery,
logs:ListLogDeliveries

Update

ec2:ModifyVerifiedAccessInstance,
ec2:ModifyVerifiedAccessInstanceLoggingConfiguration,
ec2:DescribeVerifiedAccessInstances,
ec2:DescribeVerifiedAccessInstanceLoggingConfigurations,
ec2:DescribeTags,
ec2:AttachVerifiedAccessTrustProvider,
ec2:DetachVerifiedAccessTrustProvider,
ec2:DeleteTags,
ec2:CreateTags,
ec2:DescribeTags,
logs:CreateLogDelivery,
logs:GetLogDelivery,
logs:ListLogDeliveries,
logs:UpdateLogDelivery,
logs:DeleteLogDelivery,
logs:PutDestination,
logs:PutLogEvents,
logs:DescribeLogStreams,
s3:listBuckets,
s3:PutObject,
s3:GetBucketPolicy,
s3:PutBucketPolicy,
logs:DescribeLogGroups,
logs:PutResourcePolicy,
firehose:TagDeliveryStream,
iam:CreateServiceLinkedRole,
logs:DescribeResourcePolicies