AWS Secrets Manager (secretsmanager)

2021-11-10

3 new conditions | 20 updated actions, 1 updated resource, 4 updated conditions

Additions

Updates

    Actions
  • CancelRotateSecret
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • CreateSecret
      Conditions
    • + aws:RequestTag/${TagKey}
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:AddReplicaRegions
    • + secretsmanager:ForceOverwriteReplicaSecret
    • - aws:RequestTag/tag-key
  • DeleteResourcePolicy
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • DeleteSecret
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • DescribeSecret
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • GetResourcePolicy
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • GetSecretValue
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • ListSecretVersionIds
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • PutResourcePolicy
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • PutSecretValue
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • RemoveRegionsFromReplication
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • ReplicateSecretToRegions
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
    • + secretsmanager:AddReplicaRegions
    • + secretsmanager:ForceOverwriteReplicaSecret
  • RestoreSecret
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • RotateSecret
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • StopReplicationToReplica
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • TagResource
      Conditions
    • + aws:RequestTag/${TagKey}
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
    • - aws:RequestTag/tag-key
  • UntagResource
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • UpdateSecret
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • UpdateSecretVersionStage
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
  • ValidateResourcePolicy
      Conditions
    • + aws:ResourceTag/${TagKey}
    • + secretsmanager:SecretPrimaryRegion
    Resources
  • Secret
      Conditions
    • + aws:RequestTag/${TagKey}
    • + aws:ResourceTag/${TagKey}
    • - aws:RequestTag/tag-key