Amazon SageMaker geospatial capabilities (sagemaker-geospatial)

2022-12-03

19 new actions, 3 new resources, 3 new conditions

Additions

    Actions
  • DeleteEarthObservationJob
    • Description:  Grants permission to the DeleteEarthObservationJob operation which deletes an existing earth observation job
    • Access:  Write
    • Resources: 

      Name: EarthObservationJob

      Required: Yes

    • Conditions: 

      aws:ResourceTag/${TagKey}

  • DeleteVectorEnrichmentJob
    • Description:  Grants permission to the DeleteVectorEnrichmentJob operation which deletes an existing vector enrichment job
    • Access:  Write
    • Resources: 

      Name: VectorEnrichmentJob

      Required: Yes

    • Conditions: 

      aws:ResourceTag/${TagKey}

  • ExportEarthObservationJob
    • Description:  Grants permission to copy results of an earth observation job to an S3 location
    • Access:  Write
    • Resources: 

      Name: EarthObservationJob

      Required: Yes

    • Conditions: 

      aws:ResourceTag/${TagKey}

  • ExportVectorEnrichmentJob
    • Description:  Grants permission to copy results of an VectorEnrichmentJob to an S3 location
    • Access:  Write
    • Resources: 

      Name: VectorEnrichmentJob

      Required: Yes

    • Conditions: 

      aws:ResourceTag/${TagKey}

  • GetEarthObservationJob
    • Description:  Grants permission to return details about the earth observation job
    • Access:  Read
    • Resources: 

      Name: EarthObservationJob

      Required: Yes

    • Conditions: 

      aws:ResourceTag/${TagKey}

  • GetRasterDataCollection
    • Description:  Grants permission to return details about the raster data collection
    • Access:  Read
    • Resources: 

      Name: RasterDataCollection

      Required: Yes

    • Conditions: 

      aws:ResourceTag/${TagKey}

  • GetTile
    • Description:  Grants permission to get the tile of an earth observation job
    • Access:  Read
    • Resources: 

      Name: EarthObservationJob

      Required: Yes

  • GetVectorEnrichmentJob
    • Description:  Grants permission to return details about the vector enrichment job
    • Access:  Read
    • Resources: 

      Name: VectorEnrichmentJob

      Required: Yes

    • Conditions: 

      aws:ResourceTag/${TagKey}

  • ListEarthObservationJobs
    • Description:  Grants permission to return an array of earth observation jobs associated with the current account
    • Access:  List
  • ListRasterDataCollections
    • Description:  Grants permission to return an array of aster data collections associated with the given model name
    • Access:  List
  • ListTagsForResource
    • Description:  Grants permission to lists tag for an SageMaker Geospatial resource
    • Access:  List
    • Resources: 

      Name: EarthObservationJob

      Required: No

      Name: RasterDataCollection

      Required: No

      Name: VectorEnrichmentJob

      Required: No

    • Conditions: 

      aws:ResourceTag/${TagKey}

  • ListVectorEnrichmentJobs
    • Description:  Grants permission to return an array of vector enrichment jobs associated with the current account
    • Access:  List
  • SearchRasterDataCollection
    • Description:  Grants permission to query raster data collections
    • Access:  Read
  • StartEarthObservationJob
    • Description:  Grants permission to the StartEarthObservationJob operation which starts a new earth observation job to your account
    • Access:  Write
    • Resources: 

      Name: EarthObservationJob

      Required: Yes

    • Conditions: 

      aws:RequestTag/${TagKey}

      aws:TagKeys

  • StartVectorEnrichmentJob
    • Description:  Grants permission to the StartVectorEnrichmentJob operation which starts a new vector enrichment job to your account
    • Access:  Write
    • Resources: 

      Name: VectorEnrichmentJob

      Required: Yes

    • Conditions: 

      aws:RequestTag/${TagKey}

      aws:TagKeys

  • StopEarthObservationJob
    • Description:  Grants permission to the StopEarthObservationJob operation which stops an existing earth observation job
    • Access:  Write
    • Resources: 

      Name: EarthObservationJob

      Required: Yes

    • Conditions: 

      aws:ResourceTag/${TagKey}

  • StopVectorEnrichmentJob
    • Description:  Grants permission to the StopVectorEnrichmentJob operation which stops an existing vector enrichment job
    • Access:  Write
    • Resources: 

      Name: VectorEnrichmentJob

      Required: Yes

    • Conditions: 

      aws:ResourceTag/${TagKey}

  • TagResource
    • Description:  Grants permission to tag an SageMaker Geospatial resource
    • Access:  Tagging
    • Resources: 

      Name: EarthObservationJob

      Required: No

      Name: RasterDataCollection

      Required: No

      Name: VectorEnrichmentJob

      Required: No

    • Conditions: 

      aws:TagKeys

      aws:RequestTag/${TagKey}

      aws:ResourceTag/${TagKey}

  • UntagResource
    • Description:  Grants permission to untag an SageMaker Geospatial resource
    • Access:  Tagging
    • Resources: 

      Name: EarthObservationJob

      Required: No

      Name: RasterDataCollection

      Required: No

      Name: VectorEnrichmentJob

      Required: No

    • Conditions: 

      aws:TagKeys

    Resources
  • EarthObservationJob
    • Arn:  arn:${Partition}:sagemaker-geospatial:${Region}:${Account}:earth-observation-job/${JobID}
    • Conditions: 

      aws:ResourceTag/${TagKey}

  • RasterDataCollection
    • Arn:  arn:${Partition}:sagemaker-geospatial:${Region}:${Account}:raster-data-collection/${CollectionID}
    • Conditions: 

      aws:ResourceTag/${TagKey}

  • VectorEnrichmentJob
    • Arn:  arn:${Partition}:sagemaker-geospatial:${Region}:${Account}:vector-enrichment-job/${JobID}
    • Conditions: 

      aws:ResourceTag/${TagKey}

    Conditions
  • aws:RequestTag/${TagKey}
    • Description:  Filters access by the presence of tag key-value pairs in the request
    • Type:  String
  • aws:ResourceTag/${TagKey}
    • Description:  Filters access by tag key-value pairs attached to the resource
    • Type:  String
  • aws:TagKeys
    • Description:  Filters access by the presence of tag keys in the request
    • Type:  ArrayOfString