{
  "url": "https://docs.aws.amazon.com/service-authorization/latest/reference/list_amazonredshift.html",
  "name": "Amazon Redshift",
  "prefix": "redshift",
  "timestamp": "1781568006",
  "actions": [
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_AcceptReservedNodeExchange.html",
      "name": "AcceptReservedNodeExchange",
      "description": "Grants permission to exchange a DC1 reserved node for a DC2 reserved node with no changes to the configuration",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_AddPartner.html",
      "name": "AddPartner",
      "description": "Grants permission to add a partner integration to a cluster",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_AssociateDataShareConsumer.html",
      "name": "AssociateDataShareConsumer",
      "description": "Grants permission to associate a consumer to a datashare",
      "access": "Write",
      "resources": [
        {
          "name": "datashare",
          "is_required": true
        }
      ],
      "conditions": [
        "redshift:ConsumerArn",
        "redshift:AllowWrites"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_AuthorizeClusterSecurityGroupIngress.html",
      "name": "AuthorizeClusterSecurityGroupIngress",
      "description": "Grants permission to add an inbound (ingress) rule to an Amazon Redshift security group",
      "access": "Write",
      "resources": [
        {
          "name": "securitygroup",
          "is_required": true
        },
        {
          "name": "securitygroupingress-ec2securitygroup",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_AuthorizeDataShare.html",
      "name": "AuthorizeDataShare",
      "description": "Grants permission to authorize the specified datashare consumer to consume a datashare",
      "access": "Permissions management",
      "resources": [
        {
          "name": "datashare",
          "is_required": true
        }
      ],
      "conditions": [
        "redshift:ConsumerIdentifier",
        "redshift:AllowWrites"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_AuthorizeEndpointAccess.html",
      "name": "AuthorizeEndpointAccess",
      "description": "Grants permission to authorize endpoint related activities for redshift-managed vpc endpoint",
      "access": "Permissions management",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/zero-etl-using.setting-up.html",
      "name": "AuthorizeInboundIntegration",
      "description": "Grants permission to Amazon Redshift to continuously validate that the target namespace can receive data replicated from the source ARN",
      "access": "Write",
      "resources": [
        {
          "name": "namespace",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_AuthorizeSnapshotAccess.html",
      "name": "AuthorizeSnapshotAccess",
      "description": "Grants permission to the specified AWS account to restore a snapshot",
      "access": "Permissions management",
      "resources": [
        {
          "name": "snapshot",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_BatchDeleteClusterSnapshots.html",
      "name": "BatchDeleteClusterSnapshots",
      "description": "Grants permission to delete snapshots in a batch of size upto 100",
      "access": "Write",
      "resources": [
        {
          "name": "snapshot",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_BatchModifyClusterSnapshots.html",
      "name": "BatchModifyClusterSnapshots",
      "description": "Grants permission to modify settings for a list of snapshots",
      "access": "Write",
      "resources": [
        {
          "name": "snapshot",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "CancelQuery",
      "description": "Grants permission to cancel a query through the Amazon Redshift console",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "CancelQuerySession",
      "description": "Grants permission to see queries in the Amazon Redshift console",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CancelResize.html",
      "name": "CancelResize",
      "description": "Grants permission to cancel a resize operation",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CopyClusterSnapshot.html",
      "name": "CopyClusterSnapshot",
      "description": "Grants permission to copy a cluster snapshot",
      "access": "Write",
      "resources": [
        {
          "name": "snapshot",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateAuthenticationProfile.html",
      "name": "CreateAuthenticationProfile",
      "description": "Grants permission to create an Amazon Redshift authentication profile",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateCluster.html",
      "name": "CreateCluster",
      "description": "Grants permission to create a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": [
        "kms:CreateGrant",
        "kms:Decrypt",
        "kms:DescribeKey",
        "kms:GenerateDataKey",
        "kms:RetireGrant",
        "secretsmanager:CreateSecret",
        "secretsmanager:DeleteSecret",
        "secretsmanager:DescribeSecret",
        "secretsmanager:GetRandomPassword",
        "secretsmanager:RotateSecret",
        "secretsmanager:TagResource",
        "secretsmanager:UpdateSecret"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateClusterParameterGroup.html",
      "name": "CreateClusterParameterGroup",
      "description": "Grants permission to create an Amazon Redshift parameter group",
      "access": "Write",
      "resources": [
        {
          "name": "parametergroup",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateClusterSecurityGroup.html",
      "name": "CreateClusterSecurityGroup",
      "description": "Grants permission to create an Amazon Redshift security group",
      "access": "Write",
      "resources": [
        {
          "name": "securitygroup",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateClusterSnapshot.html",
      "name": "CreateClusterSnapshot",
      "description": "Grants permission to create a manual snapshot of the specified cluster",
      "access": "Write",
      "resources": [
        {
          "name": "snapshot",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateClusterSubnetGroup.html",
      "name": "CreateClusterSubnetGroup",
      "description": "Grants permission to create an Amazon Redshift subnet group",
      "access": "Write",
      "resources": [
        {
          "name": "subnetgroup",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/generating-iam-credentials-role-permissions.html",
      "name": "CreateClusterUser",
      "description": "Grants permission to automatically create the specified Amazon Redshift user if it does not exist",
      "access": "Permissions management",
      "resources": [
        {
          "name": "dbuser",
          "is_required": true
        }
      ],
      "conditions": [
        "redshift:DbUser"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateCustomDomainAssociation.html",
      "name": "CreateCustomDomainAssociation",
      "description": "Grants permission to create a custom domain name for a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": [
        "acm:DescribeCertificate"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateEndpointAccess.html",
      "name": "CreateEndpointAccess",
      "description": "Grants permission to create a redshift-managed vpc endpoint",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateEventSubscription.html",
      "name": "CreateEventSubscription",
      "description": "Grants permission to create an Amazon Redshift event notification subscription",
      "access": "Write",
      "resources": [
        {
          "name": "eventsubscription",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateHsmClientCertificate.html",
      "name": "CreateHsmClientCertificate",
      "description": "Grants permission to create an HSM client certificate that a cluster uses to connect to an HSM",
      "access": "Write",
      "resources": [
        {
          "name": "hsmclientcertificate",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateHsmConfiguration.html",
      "name": "CreateHsmConfiguration",
      "description": "Grants permission to create an HSM configuration that contains information required by a cluster to store and use database encryption keys in a hardware security module (HSM)",
      "access": "Write",
      "resources": [
        {
          "name": "hsmconfiguration",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/zero-etl-using.setting-up.html",
      "name": "CreateInboundIntegration",
      "description": "Grants permission to the source principal to create an integration into the namespace of target data warehouse",
      "access": "Write",
      "resources": [
        {
          "name": "namespace",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateIntegration.html",
      "name": "CreateIntegration",
      "description": "Grants permission to create an Amazon Redshift zero-ETL integration",
      "access": "Write",
      "resources": [
        {
          "name": "integration",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys",
        "redshift:IntegrationSourceArn",
        "redshift:IntegrationTargetArn"
      ],
      "dependents": [
        "kms:CreateGrant",
        "kms:DescribeKey"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-idp-connect.html",
      "name": "CreateQev2IdcApplication",
      "description": "Grants permission to create a qev2 idc application",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": [
        "sso:CreateApplication",
        "sso:PutApplicationAccessScope",
        "sso:PutApplicationAuthenticationMethod",
        "sso:PutApplicationGrant"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateRedshiftIdcApplication.html",
      "name": "CreateRedshiftIdcApplication",
      "description": "Grants permission to create a redshift idc application",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": [
        "sso:CreateApplication",
        "sso:PutApplicationAccessScope",
        "sso:PutApplicationAuthenticationMethod",
        "sso:PutApplicationGrant"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "CreateSavedQuery",
      "description": "Grants permission to create saved SQL queries through the Amazon Redshift console",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateScheduledAction.html",
      "name": "CreateScheduledAction",
      "description": "Grants permission to create an Amazon Redshift scheduled action",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateSnapshotCopyGrant.html",
      "name": "CreateSnapshotCopyGrant",
      "description": "Grants permission to create a snapshot copy grant and encrypt copied snapshots in a destination AWS Region",
      "access": "Permissions management",
      "resources": [
        {
          "name": "snapshotcopygrant",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateSnapshotSchedule.html",
      "name": "CreateSnapshotSchedule",
      "description": "Grants permission to create a snapshot schedule",
      "access": "Write",
      "resources": [
        {
          "name": "snapshotschedule",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateTags.html",
      "name": "CreateTags",
      "description": "Grants permission to add one or more tags to a specified resource",
      "access": "Tagging",
      "resources": [
        {
          "name": "cluster",
          "is_required": false
        },
        {
          "name": "eventsubscription",
          "is_required": false
        },
        {
          "name": "hsmclientcertificate",
          "is_required": false
        },
        {
          "name": "hsmconfiguration",
          "is_required": false
        },
        {
          "name": "integration",
          "is_required": false
        },
        {
          "name": "parametergroup",
          "is_required": false
        },
        {
          "name": "securitygroup",
          "is_required": false
        },
        {
          "name": "securitygroupingress-cidr",
          "is_required": false
        },
        {
          "name": "securitygroupingress-ec2securitygroup",
          "is_required": false
        },
        {
          "name": "snapshot",
          "is_required": false
        },
        {
          "name": "snapshotcopygrant",
          "is_required": false
        },
        {
          "name": "snapshotschedule",
          "is_required": false
        },
        {
          "name": "subnetgroup",
          "is_required": false
        },
        {
          "name": "usagelimit",
          "is_required": false
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_CreateUsageLimit.html",
      "name": "CreateUsageLimit",
      "description": "Grants permission to create a usage limit",
      "access": "Write",
      "resources": [
        {
          "name": "usagelimit",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:RequestTag/${TagKey}",
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeauthorizeDataShare.html",
      "name": "DeauthorizeDataShare",
      "description": "Grants permission to remove permission from the specified datashare consumer to consume a datashare",
      "access": "Permissions management",
      "resources": [
        {
          "name": "datashare",
          "is_required": true
        }
      ],
      "conditions": [
        "redshift:ConsumerIdentifier"
      ],
      "dependents": []
    },
    {
      "url": "API_DeleteAuthenticationProfile.html",
      "name": "DeleteAuthenticationProfile",
      "description": "Grants permission to delete an Amazon Redshift authentication profile",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteCluster.html",
      "name": "DeleteCluster",
      "description": "Grants permission to delete a previously provisioned cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteClusterParameterGroup.html",
      "name": "DeleteClusterParameterGroup",
      "description": "Grants permission to delete an Amazon Redshift parameter group",
      "access": "Write",
      "resources": [
        {
          "name": "parametergroup",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteClusterSecurityGroup.html",
      "name": "DeleteClusterSecurityGroup",
      "description": "Grants permission to delete an Amazon Redshift security group",
      "access": "Write",
      "resources": [
        {
          "name": "securitygroup",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteClusterSnapshot.html",
      "name": "DeleteClusterSnapshot",
      "description": "Grants permission to delete a manual snapshot",
      "access": "Write",
      "resources": [
        {
          "name": "snapshot",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteClusterSubnetGroup.html",
      "name": "DeleteClusterSubnetGroup",
      "description": "Grants permission to delete a cluster subnet group",
      "access": "Write",
      "resources": [
        {
          "name": "subnetgroup",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteCustomDomainAssociation.html",
      "name": "DeleteCustomDomainAssociation",
      "description": "Grants permission to delete a custom domain name for a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteEndpointAccess.html",
      "name": "DeleteEndpointAccess",
      "description": "Grants permission to delete a redshift-managed vpc endpoint",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteEventSubscription.html",
      "name": "DeleteEventSubscription",
      "description": "Grants permission to delete an Amazon Redshift event notification subscription",
      "access": "Write",
      "resources": [
        {
          "name": "eventsubscription",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteHsmClientCertificate.html",
      "name": "DeleteHsmClientCertificate",
      "description": "Grants permission to delete an HSM client certificate",
      "access": "Write",
      "resources": [
        {
          "name": "hsmclientcertificate",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteHsmConfiguration.html",
      "name": "DeleteHsmConfiguration",
      "description": "Grants permission to delete an Amazon Redshift HSM configuration",
      "access": "Write",
      "resources": [
        {
          "name": "hsmconfiguration",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteIntegration.html",
      "name": "DeleteIntegration",
      "description": "Grants permission to delete an Amazon Redshift zero-ETL integration",
      "access": "Write",
      "resources": [
        {
          "name": "integration",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeletePartner.html",
      "name": "DeletePartner",
      "description": "Grants permission to delete a partner integration from a cluster",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-idp-connect.html",
      "name": "DeleteQev2IdcApplication",
      "description": "Grants permission to delete a qev2 idc application",
      "access": "Write",
      "resources": [
        {
          "name": "qev2idcapplication",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": [
        "sso:DeleteApplication"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteRedshiftIdcApplication.html",
      "name": "DeleteRedshiftIdcApplication",
      "description": "Grants permission to delete a redshift idc application",
      "access": "Write",
      "resources": [
        {
          "name": "redshiftidcapplication",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": [
        "sso:DeleteApplication"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteResourcePolicy.html",
      "name": "DeleteResourcePolicy",
      "description": "Grants permission to delete the resource policy for a specified resource",
      "access": "Permissions management",
      "resources": [
        {
          "name": "namespace",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "DeleteSavedQueries",
      "description": "Grants permission to delete saved SQL queries through the Amazon Redshift console",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "API_DeleteScheduledAction.html",
      "name": "DeleteScheduledAction",
      "description": "Grants permission to delete an Amazon Redshift scheduled action",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteSnapshotCopyGrant.html",
      "name": "DeleteSnapshotCopyGrant",
      "description": "Grants permission to delete a snapshot copy grant",
      "access": "Write",
      "resources": [
        {
          "name": "snapshotcopygrant",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteSnapshotSchedule.html",
      "name": "DeleteSnapshotSchedule",
      "description": "Grants permission to delete a snapshot schedule",
      "access": "Write",
      "resources": [
        {
          "name": "snapshotschedule",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteTags.html",
      "name": "DeleteTags",
      "description": "Grants permission to delete a tag or tags from a resource",
      "access": "Tagging",
      "resources": [
        {
          "name": "cluster",
          "is_required": false
        },
        {
          "name": "eventsubscription",
          "is_required": false
        },
        {
          "name": "hsmclientcertificate",
          "is_required": false
        },
        {
          "name": "hsmconfiguration",
          "is_required": false
        },
        {
          "name": "integration",
          "is_required": false
        },
        {
          "name": "parametergroup",
          "is_required": false
        },
        {
          "name": "securitygroup",
          "is_required": false
        },
        {
          "name": "securitygroupingress-cidr",
          "is_required": false
        },
        {
          "name": "securitygroupingress-ec2securitygroup",
          "is_required": false
        },
        {
          "name": "snapshot",
          "is_required": false
        },
        {
          "name": "snapshotcopygrant",
          "is_required": false
        },
        {
          "name": "snapshotschedule",
          "is_required": false
        },
        {
          "name": "subnetgroup",
          "is_required": false
        },
        {
          "name": "usagelimit",
          "is_required": false
        }
      ],
      "conditions": [
        "aws:TagKeys"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeleteUsageLimit.html",
      "name": "DeleteUsageLimit",
      "description": "Grants permission to delete a usage limit",
      "access": "Write",
      "resources": [
        {
          "name": "usagelimit",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DeregisterNamespace.html",
      "name": "DeregisterNamespace",
      "description": "Grants permission to deregister the specified namespace from a consumer",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeAccountAttributes.html",
      "name": "DescribeAccountAttributes",
      "description": "Grants permission to describe attributes attached to the specified AWS account",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "API_DescribeAuthenticationProfiles.html",
      "name": "DescribeAuthenticationProfiles",
      "description": "Grants permission to describe created Amazon Redshift authentication profiles",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/dg/t_Manage_workload_exclusion.html",
      "name": "DescribeAutonomicsDenylist",
      "description": "Grants permission to describe the list of resources that are denylisted from global autonomics decisions for a specified cluster",
      "access": "Read",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeClusterDbRevisions.html",
      "name": "DescribeClusterDbRevisions",
      "description": "Grants permission to describe database revisions for a cluster",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeClusterParameterGroups.html",
      "name": "DescribeClusterParameterGroups",
      "description": "Grants permission to describe Amazon Redshift parameter groups, including parameter groups you created and the default parameter group",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeClusterParameters.html",
      "name": "DescribeClusterParameters",
      "description": "Grants permission to describe parameters contained within an Amazon Redshift parameter group",
      "access": "Read",
      "resources": [
        {
          "name": "parametergroup",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeClusterSecurityGroups.html",
      "name": "DescribeClusterSecurityGroups",
      "description": "Grants permission to describe Amazon Redshift security groups",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeClusterSnapshots.html",
      "name": "DescribeClusterSnapshots",
      "description": "Grants permission to describe one or more snapshot objects, which contain metadata about your cluster snapshots",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeClusterSubnetGroups.html",
      "name": "DescribeClusterSubnetGroups",
      "description": "Grants permission to describe one or more cluster subnet group objects, which contain metadata about your cluster subnet groups",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeClusterTracks.html",
      "name": "DescribeClusterTracks",
      "description": "Grants permission to describe available maintenance tracks",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeClusterVersions.html",
      "name": "DescribeClusterVersions",
      "description": "Grants permission to describe available Amazon Redshift cluster versions",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeClusters.html",
      "name": "DescribeClusters",
      "description": "Grants permission to describe properties of provisioned clusters",
      "access": "List",
      "resources": [
        {
          "name": "cluster",
          "is_required": false
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeCustomDomainAssociations.html",
      "name": "DescribeCustomDomainAssociations",
      "description": "Grants permission to describe custom domain names for a cluster",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeDataShares.html",
      "name": "DescribeDataShares",
      "description": "Grants permission to describe datashares created and consumed by your clusters",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeDataSharesForConsumer.html",
      "name": "DescribeDataSharesForConsumer",
      "description": "Grants permission to describe only datashares consumed by your clusters",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeDataSharesForProducer.html",
      "name": "DescribeDataSharesForProducer",
      "description": "Grants permission to describe only datashares created by your clusters",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeDefaultClusterParameters.html",
      "name": "DescribeDefaultClusterParameters",
      "description": "Grants permission to describe parameter settings for a parameter group family",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeEndpointAccess.html",
      "name": "DescribeEndpointAccess",
      "description": "Grants permission to describe redshift-managed vpc endpoints",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeEndpointAuthorization.html",
      "name": "DescribeEndpointAuthorization",
      "description": "Grants permission to authorize describe activity for redshift-managed vpc endpoint",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeEventCategories.html",
      "name": "DescribeEventCategories",
      "description": "Grants permission to describe event categories for all event source types, or for a specified source type",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeEventSubscriptions.html",
      "name": "DescribeEventSubscriptions",
      "description": "Grants permission to describe Amazon Redshift event notification subscriptions for the specified AWS account",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeEvents.html",
      "name": "DescribeEvents",
      "description": "Grants permission to describe events related to clusters, security groups, snapshots, and parameter groups for the past 14 days",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeHsmClientCertificates.html",
      "name": "DescribeHsmClientCertificates",
      "description": "Grants permission to describe HSM client certificates",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeHsmConfigurations.html",
      "name": "DescribeHsmConfigurations",
      "description": "Grants permission to describe Amazon Redshift HSM configurations",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeInboundIntegrations.html",
      "name": "DescribeInboundIntegrations",
      "description": "Grants permission to list the inbound integrations",
      "access": "List",
      "resources": [],
      "conditions": [
        "redshift:InboundIntegrationArn"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeIntegrations.html",
      "name": "DescribeIntegrations",
      "description": "Grants permission to describe an Amazon Redshift zero-ETL integration",
      "access": "List",
      "resources": [
        {
          "name": "integration",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeLoggingStatus.html",
      "name": "DescribeLoggingStatus",
      "description": "Grants permission to describe whether information, such as queries and connection attempts, is being logged for a cluster",
      "access": "Read",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeNodeConfigurationOptions.html",
      "name": "DescribeNodeConfigurationOptions",
      "description": "Grants permission to describe properties of possible node configurations such as node type, number of nodes, and disk usage for the specified action type",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeOrderableClusterOptions.html",
      "name": "DescribeOrderableClusterOptions",
      "description": "Grants permission to describe orderable cluster options",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribePartners.html",
      "name": "DescribePartners",
      "description": "Grants permission to retrieve information about the partner integrations defined for a cluster",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-idp-connect.html",
      "name": "DescribeQev2IdcApplications",
      "description": "Grants permission to describe qev2 idc applications",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "DescribeQuery",
      "description": "Grants permission to describe a query through the Amazon Redshift console",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeRedshiftIdcApplications.html",
      "name": "DescribeRedshiftIdcApplications",
      "description": "Grants permission to describe redshift idc applications",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": [
        "sso:GetApplicationGrant",
        "sso:ListApplicationAccessScopes"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeReservedNodeExchangeStatus.html",
      "name": "DescribeReservedNodeExchangeStatus",
      "description": "Grants permission to describe exchange status details and associated metadata for a reserved-node exchange. Statuses include such values as in progress and requested",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeReservedNodeOfferings.html",
      "name": "DescribeReservedNodeOfferings",
      "description": "Grants permission to describe available reserved node offerings by Amazon Redshift",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeReservedNodes.html",
      "name": "DescribeReservedNodes",
      "description": "Grants permission to describe the reserved nodes",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeResize.html",
      "name": "DescribeResize",
      "description": "Grants permission to describe the last resize operation for a cluster",
      "access": "Read",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "DescribeSavedQueries",
      "description": "Grants permission to describe saved queries through the Amazon Redshift console",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "API_DescribeScheduledActions.html",
      "name": "DescribeScheduledActions",
      "description": "Grants permission to describe created Amazon Redshift scheduled actions",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeSnapshotCopyGrants.html",
      "name": "DescribeSnapshotCopyGrants",
      "description": "Grants permission to describe snapshot copy grants owned by the specified AWS account in the destination AWS Region",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeSnapshotSchedules.html",
      "name": "DescribeSnapshotSchedules",
      "description": "Grants permission to describe snapshot schedules",
      "access": "Read",
      "resources": [
        {
          "name": "snapshotschedule",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeStorage.html",
      "name": "DescribeStorage",
      "description": "Grants permission to describe account level backups storage size and provisional storage",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "DescribeTable",
      "description": "Grants permission to describe a table through the Amazon Redshift console",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeTableRestoreStatus.html",
      "name": "DescribeTableRestoreStatus",
      "description": "Grants permission to describe status of one or more table restore requests made using the RestoreTableFromClusterSnapshot API action",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeTags.html",
      "name": "DescribeTags",
      "description": "Grants permission to describe tags",
      "access": "Read",
      "resources": [
        {
          "name": "cluster",
          "is_required": false
        },
        {
          "name": "eventsubscription",
          "is_required": false
        },
        {
          "name": "hsmclientcertificate",
          "is_required": false
        },
        {
          "name": "hsmconfiguration",
          "is_required": false
        },
        {
          "name": "integration",
          "is_required": false
        },
        {
          "name": "parametergroup",
          "is_required": false
        },
        {
          "name": "securitygroup",
          "is_required": false
        },
        {
          "name": "securitygroupingress-cidr",
          "is_required": false
        },
        {
          "name": "securitygroupingress-ec2securitygroup",
          "is_required": false
        },
        {
          "name": "snapshot",
          "is_required": false
        },
        {
          "name": "snapshotcopygrant",
          "is_required": false
        },
        {
          "name": "snapshotschedule",
          "is_required": false
        },
        {
          "name": "subnetgroup",
          "is_required": false
        },
        {
          "name": "usagelimit",
          "is_required": false
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DescribeUsageLimits.html",
      "name": "DescribeUsageLimits",
      "description": "Grants permission to describe usage limits",
      "access": "Read",
      "resources": [
        {
          "name": "usagelimit",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DisableLogging.html",
      "name": "DisableLogging",
      "description": "Grants permission to disable logging information, such as queries and connection attempts, for a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DisableSnapshotCopy.html",
      "name": "DisableSnapshotCopy",
      "description": "Grants permission to disable the automatic copy of snapshots for a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_DisassociateDataShareConsumer.html",
      "name": "DisassociateDataShareConsumer",
      "description": "Grants permission to disassociate a consumer from a datashare",
      "access": "Write",
      "resources": [
        {
          "name": "datashare",
          "is_required": true
        }
      ],
      "conditions": [
        "redshift:ConsumerArn"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_EnableLogging.html",
      "name": "EnableLogging",
      "description": "Grants permission to enable logging information, such as queries and connection attempts, for a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_EnableSnapshotCopy.html",
      "name": "EnableSnapshotCopy",
      "description": "Grants permission to enable the automatic copy of snapshots for a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "ExecuteQuery",
      "description": "Grants permission to execute a query through the Amazon Redshift console",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_FailoverPrimaryCompute.html",
      "name": "FailoverPrimaryCompute",
      "description": "Grants permission to failover the primary compute of an Multi-AZ cluster to another AZ",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "FetchResults",
      "description": "Grants permission to fetch query results through the Amazon Redshift console",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_GetClusterCredentials.html",
      "name": "GetClusterCredentials",
      "description": "Grants permission to get temporary credentials to access an Amazon Redshift database by the specified AWS account",
      "access": "Write",
      "resources": [
        {
          "name": "dbuser",
          "is_required": true
        },
        {
          "name": "dbname",
          "is_required": false
        }
      ],
      "conditions": [
        "redshift:DbName",
        "redshift:DbUser",
        "redshift:DurationSeconds"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_GetClusterCredentialsWithIAM.html",
      "name": "GetClusterCredentialsWithIAM",
      "description": "Grants permission to get enhanced temporary credentials to access an Amazon Redshift database by the specified AWS account",
      "access": "Write",
      "resources": [
        {
          "name": "dbname",
          "is_required": false
        }
      ],
      "conditions": [
        "redshift:DbName",
        "redshift:DurationSeconds"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/identity-center-authentication.html",
      "name": "GetIdentityCenterAuthToken",
      "description": "Grants permission to get an authorized token for Identity Center users to access Redshift clusters",
      "access": "Read",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_GetReservedNodeExchangeConfigurationOptions.html",
      "name": "GetReservedNodeExchangeConfigurationOptions",
      "description": "Grants permission to get the configuration options for the reserved-node exchange",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_GetReservedNodeExchangeOfferings.html",
      "name": "GetReservedNodeExchangeOfferings",
      "description": "Grants permission to get an array of DC2 ReservedNodeOfferings that matches the payment type, term, and usage price of the given DC1 reserved node",
      "access": "Read",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_GetResourcePolicy.html",
      "name": "GetResourcePolicy",
      "description": "Grants permission to get the resource policy for a specified resource",
      "access": "Read",
      "resources": [
        {
          "name": "namespace",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_GetClusterCredentials.html",
      "name": "JoinGroup",
      "description": "Grants permission to join the specified Amazon Redshift group",
      "access": "Permissions management",
      "resources": [
        {
          "name": "dbgroup",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "ListDatabases",
      "description": "Grants permission to list databases through the Amazon Redshift console",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "API_ListRecommendations.html",
      "name": "ListRecommendations",
      "description": "Grants permission to list Advisor recommendations",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "ListSavedQueries",
      "description": "Grants permission to list saved queries through the Amazon Redshift console",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "ListSchemas",
      "description": "Grants permission to list schemas through the Amazon Redshift console",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "ListTables",
      "description": "Grants permission to list tables through the Amazon Redshift console",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyAquaConfiguration.html",
      "name": "ModifyAquaConfiguration",
      "description": "Grants permission to modify the AQUA configuration of a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyAuthenticationProfile.html",
      "name": "ModifyAuthenticationProfile",
      "description": "Grants permission to modify an existing Amazon Redshift authentication profile",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/dg/t_Manage_workload_exclusion.html",
      "name": "ModifyAutonomicsDenylist",
      "description": "Grants permission to add or remove resources from the global autonomics denylist for a specified cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyCluster.html",
      "name": "ModifyCluster",
      "description": "Grants permission to modify the settings of a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": [
        "acm:DescribeCertificate",
        "kms:CreateGrant",
        "kms:Decrypt",
        "kms:DescribeKey",
        "kms:GenerateDataKey",
        "kms:RetireGrant",
        "secretsmanager:CreateSecret",
        "secretsmanager:DeleteSecret",
        "secretsmanager:DescribeSecret",
        "secretsmanager:GetRandomPassword",
        "secretsmanager:RotateSecret",
        "secretsmanager:TagResource",
        "secretsmanager:UpdateSecret"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyClusterDbRevision.html",
      "name": "ModifyClusterDbRevision",
      "description": "Grants permission to modify the database revision of a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyClusterIamRoles.html",
      "name": "ModifyClusterIamRoles",
      "description": "Grants permission to modify the list of AWS Identity and Access Management (IAM) roles that can be used by a cluster to access other AWS services",
      "access": "Permissions management",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyClusterMaintenance.html",
      "name": "ModifyClusterMaintenance",
      "description": "Grants permission to modify the maintenance settings of a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyClusterParameterGroup.html",
      "name": "ModifyClusterParameterGroup",
      "description": "Grants permission to modify the parameters of a parameter group",
      "access": "Write",
      "resources": [
        {
          "name": "parametergroup",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyClusterSnapshot.html",
      "name": "ModifyClusterSnapshot",
      "description": "Grants permission to modify the settings of a snapshot",
      "access": "Write",
      "resources": [
        {
          "name": "snapshot",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyClusterSnapshotSchedule.html",
      "name": "ModifyClusterSnapshotSchedule",
      "description": "Grants permission to modify a snapshot schedule for a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyClusterSubnetGroup.html",
      "name": "ModifyClusterSubnetGroup",
      "description": "Grants permission to modify a cluster subnet group to include the specified list of VPC subnets",
      "access": "Write",
      "resources": [
        {
          "name": "subnetgroup",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyCustomDomainAssociation.html",
      "name": "ModifyCustomDomainAssociation",
      "description": "Grants permission to modify a custom domain name for a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": [
        "acm:DescribeCertificate"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyEndpointAccess.html",
      "name": "ModifyEndpointAccess",
      "description": "Grants permission to modify a redshift-managed vpc endpoint",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyEventSubscription.html",
      "name": "ModifyEventSubscription",
      "description": "Grants permission to modify an existing Amazon Redshift event notification subscription",
      "access": "Write",
      "resources": [
        {
          "name": "eventsubscription",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyIntegration.html",
      "name": "ModifyIntegration",
      "description": "Grants permission to modify an Amazon Redshift zero-ETL integration",
      "access": "Write",
      "resources": [
        {
          "name": "integration",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-idp-connect.html",
      "name": "ModifyQev2IdcApplication",
      "description": "Grants permission to modify a qev2 idc application",
      "access": "Write",
      "resources": [
        {
          "name": "qev2idcapplication",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": [
        "sso:UpdateApplication"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyRedshiftIdcApplication.html",
      "name": "ModifyRedshiftIdcApplication",
      "description": "Grants permission to modify a redshift idc application",
      "access": "Write",
      "resources": [
        {
          "name": "redshiftidcapplication",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": [
        "sso:DeleteApplicationAccessScope",
        "sso:DeleteApplicationGrant",
        "sso:GetApplicationGrant",
        "sso:ListApplicationAccessScopes",
        "sso:PutApplicationAccessScope",
        "sso:PutApplicationGrant",
        "sso:UpdateApplication"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "ModifySavedQuery",
      "description": "Grants permission to modify an existing saved query through the Amazon Redshift console",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyScheduledAction.html",
      "name": "ModifyScheduledAction",
      "description": "Grants permission to modify an existing Amazon Redshift scheduled action",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifySnapshotCopyRetentionPeriod.html",
      "name": "ModifySnapshotCopyRetentionPeriod",
      "description": "Grants permission to modify the number of days to retain snapshots in the destination AWS Region after they are copied from the source AWS Region",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifySnapshotSchedule.html",
      "name": "ModifySnapshotSchedule",
      "description": "Grants permission to modify a snapshot schedule",
      "access": "Write",
      "resources": [
        {
          "name": "snapshotschedule",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ModifyUsageLimit.html",
      "name": "ModifyUsageLimit",
      "description": "Grants permission to modify a usage limit",
      "access": "Write",
      "resources": [
        {
          "name": "usagelimit",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_PauseCluster.html",
      "name": "PauseCluster",
      "description": "Grants permission to pause a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_PurchaseReservedNodeOffering.html",
      "name": "PurchaseReservedNodeOffering",
      "description": "Grants permission to purchase a reserved node",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_PutResourcePolicy.html",
      "name": "PutResourcePolicy",
      "description": "Grants permission to update the resource policy for a specified resource",
      "access": "Permissions management",
      "resources": [
        {
          "name": "namespace",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_RebootCluster.html",
      "name": "RebootCluster",
      "description": "Grants permission to reboot a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_RegisterNamespace.html",
      "name": "RegisterNamespace",
      "description": "Grants permission to register the specified namespace to a consumer",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_RejectDataShare.html",
      "name": "RejectDataShare",
      "description": "Grants permission to decline a datashare shared from another account",
      "access": "Permissions management",
      "resources": [
        {
          "name": "datashare",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ResetClusterParameterGroup.html",
      "name": "ResetClusterParameterGroup",
      "description": "Grants permission to set one or more parameters of a parameter group to their default values and set the source values of the parameters to \"engine-default\"",
      "access": "Write",
      "resources": [
        {
          "name": "parametergroup",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ResizeCluster.html",
      "name": "ResizeCluster",
      "description": "Grants permission to change the size of a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_RestoreFromClusterSnapshot.html",
      "name": "RestoreFromClusterSnapshot",
      "description": "Grants permission to create a cluster from a snapshot",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        },
        {
          "name": "snapshot",
          "is_required": true
        }
      ],
      "conditions": [
        "aws:TagKeys"
      ],
      "dependents": [
        "kms:CreateGrant",
        "kms:Decrypt",
        "kms:DescribeKey",
        "kms:GenerateDataKey",
        "kms:RetireGrant",
        "secretsmanager:CreateSecret",
        "secretsmanager:DeleteSecret",
        "secretsmanager:DescribeSecret",
        "secretsmanager:GetRandomPassword",
        "secretsmanager:RotateSecret",
        "secretsmanager:TagResource",
        "secretsmanager:UpdateSecret"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_RestoreTableFromClusterSnapshot.html",
      "name": "RestoreTableFromClusterSnapshot",
      "description": "Grants permission to create a table from a table in an Amazon Redshift cluster snapshot",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        },
        {
          "name": "snapshot",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_ResumeCluster.html",
      "name": "ResumeCluster",
      "description": "Grants permission to resume a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_RevokeClusterSecurityGroupIngress.html",
      "name": "RevokeClusterSecurityGroupIngress",
      "description": "Grants permission to revoke an ingress rule in an Amazon Redshift security group for a previously authorized IP range or Amazon EC2 security group",
      "access": "Write",
      "resources": [
        {
          "name": "securitygroup",
          "is_required": true
        },
        {
          "name": "securitygroupingress-ec2securitygroup",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_RevokeEndpointAccess.html",
      "name": "RevokeEndpointAccess",
      "description": "Grants permission to revoke access for endpoint related activities for redshift-managed vpc endpoint",
      "access": "Permissions management",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_RevokeSnapshotAccess.html",
      "name": "RevokeSnapshotAccess",
      "description": "Grants permission to revoke access from the specified AWS account to restore a snapshot",
      "access": "Permissions management",
      "resources": [
        {
          "name": "snapshot",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_RotateEncryptionKey.html",
      "name": "RotateEncryptionKey",
      "description": "Grants permission to rotate an encryption key for a cluster",
      "access": "Write",
      "resources": [
        {
          "name": "cluster",
          "is_required": true
        }
      ],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/APIReference/API_UpdatePartnerStatus.html",
      "name": "UpdatePartnerStatus",
      "description": "Grants permission to update the status of a partner integration",
      "access": "Write",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "ViewQueriesFromConsole",
      "description": "Grants permission to view query results through the Amazon Redshift console",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-policy-resources.resource-permissions.html",
      "name": "ViewQueriesInConsole",
      "description": "Grants permission to terminate running queries and loads through the Amazon Redshift console",
      "access": "List",
      "resources": [],
      "conditions": [],
      "dependents": []
    }
  ],
  "resources": [
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/working-with-clusters.html",
      "name": "cluster",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:cluster:${ClusterName}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/dg/datashare-overview.html",
      "name": "datashare",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:datashare:${ProducerClusterNamespace}/${DataShareName}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/dg/r_CREATE_GROUP.html",
      "name": "dbgroup",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:dbgroup:${ClusterName}/${DbGroup}",
      "conditions": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/dg/t_creating_database.html",
      "name": "dbname",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:dbname:${ClusterName}/${DbName}",
      "conditions": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/dg/r_Users.html",
      "name": "dbuser",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:dbuser:${ClusterName}/${DbUser}",
      "conditions": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/working-with-events.html",
      "name": "eventsubscription",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:eventsubscription:${EventSubscriptionName}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/working-with-db-encryption.html#working-with-HSM",
      "name": "hsmclientcertificate",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:hsmclientcertificate:${HSMClientCertificateId}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/working-with-db-encryption.html#working-with-HSM",
      "name": "hsmconfiguration",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:hsmconfiguration:${HSMConfigurationId}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/zero-etl-using.html",
      "name": "integration",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:integration:${IntegrationIdentifier}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/dg/concepts.html",
      "name": "namespace",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:namespace:${ClusterNamespace}",
      "conditions": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/working-with-parameter-groups.html",
      "name": "parametergroup",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:parametergroup:${ParameterGroupName}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/working-with-security-groups.html",
      "name": "securitygroup",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:securitygroup:${SecurityGroupName}/ec2securitygroup/${Owner}/${Ec2SecurityGroupId}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/working-with-security-groups.html",
      "name": "securitygroupingress-cidr",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:securitygroupingress:${SecurityGroupName}/cidrip/${IpRange}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/working-with-security-groups.html",
      "name": "securitygroupingress-ec2securitygroup",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:securitygroupingress:${SecurityGroupName}/ec2securitygroup/${Owner}/${Ece2SecuritygroupId}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/working-with-snapshots.html",
      "name": "snapshot",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:snapshot:${ClusterName}/${SnapshotName}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/working-with-db-encryption.html#configure-snapshot-copy-grant",
      "name": "snapshotcopygrant",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:snapshotcopygrant:${SnapshotCopyGrantName}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/working-with-snapshots.html",
      "name": "snapshotschedule",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:snapshotschedule:${ScheduleIdentifier}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/working-with-cluster-subnet-groups.html",
      "name": "subnetgroup",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:subnetgroup:${SubnetGroupName}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/managing-cluster-usage-limits.html",
      "name": "usagelimit",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:usagelimit:${UsageLimitId}",
      "conditions": [
        "aws:ResourceTag/${TagKey}"
      ]
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-idp-connect.html",
      "name": "redshiftidcapplication",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:redshiftidcapplication:${RedshiftIdcApplicationId}",
      "conditions": []
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-idp-connect.html",
      "name": "qev2idcapplication",
      "arn": "arn:${Partition}:redshift:${Region}:${Account}:qev2idcapplication:${Qev2IdcApplicationId}",
      "conditions": []
    }
  ],
  "conditions": [
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-overview.html#redshift-policy-resources.conditions",
      "name": "aws:RequestTag/${TagKey}",
      "description": "Filters access by actions based on the allowed set of values for each of the tags",
      "type": "String"
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-overview.html#redshift-policy-resources.conditions",
      "name": "aws:ResourceTag/${TagKey}",
      "description": "Filters access by actions based on tag-value associated with the resource",
      "type": "String"
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-overview.html#redshift-policy-resources.conditions",
      "name": "aws:TagKeys",
      "description": "Filters access by actions based on the presence of mandatory tags in the request",
      "type": "ArrayOfString"
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-overview.html#redshift-policy-resources.conditions",
      "name": "redshift:AllowWrites",
      "description": "Filters access by the allowWrites input parameter",
      "type": "Bool"
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-overview.html#redshift-policy-resources.conditions",
      "name": "redshift:ConsumerArn",
      "description": "Filters access by the datashare consumer arn",
      "type": "ARN"
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-overview.html#redshift-policy-resources.conditions",
      "name": "redshift:ConsumerIdentifier",
      "description": "Filters access by the datashare consumer",
      "type": "String"
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-overview.html#redshift-policy-resources.conditions",
      "name": "redshift:DbName",
      "description": "Filters access by the database name",
      "type": "String"
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-overview.html#redshift-policy-resources.conditions",
      "name": "redshift:DbUser",
      "description": "Filters access by the database user name",
      "type": "String"
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-overview.html#redshift-policy-resources.conditions",
      "name": "redshift:DurationSeconds",
      "description": "Filters access by the number of seconds until a temporary credential set expires",
      "type": "String"
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-overview.html#redshift-policy-resources.conditions",
      "name": "redshift:InboundIntegrationArn",
      "description": "Filters access by the ARN of an inbound zero-ETL Integration resource",
      "type": "ARN"
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-overview.html#redshift-policy-resources.conditions",
      "name": "redshift:IntegrationSourceArn",
      "description": "Filters access by the ARN of a zero-ETL Integration source",
      "type": "ARN"
    },
    {
      "url": "https://docs.aws.amazon.com/redshift/latest/mgmt/redshift-iam-access-control-overview.html#redshift-policy-resources.conditions",
      "name": "redshift:IntegrationTargetArn",
      "description": "Filters access by the ARN of a zero-ETL Integration target",
      "type": "ARN"
    }
  ]
}