2025-02-28
          
        11 new actions, 1 new resource | 3 updated actions
  
    
        
          
            Additions
          
              
                Actions
                
                    - 
                        CreateInvocation
                        
 
                              - 
                                Description: 
                                
                                    Grants permission to create a new invocation in an existing session
                                
                              
- 
                                Access: 
                                
                                    Write
                                
                              
- 
                                Resources: 
                                
      
        Name: session
       
        Required: Yes
       
 
- 
                        CreateSession
                        
 
                              - 
                                Description: 
                                
                                    Grants permission to create a new session
                                
                              
- 
                                Access: 
                                
                                    Write
                                
                              
- 
                                Conditions: 
                                
    aws:RequestTag/${TagKey} aws:TagKeys 
 
- 
                        DeleteSession
                        
 
                              - 
                                Description: 
                                
                                    Grants permission to delete a Session that you created earlier
                                
                              
- 
                                Access: 
                                
                                    Write
                                
                              
- 
                                Resources: 
                                
      
        Name: session
       
        Required: Yes
       
 
- 
                        EndSession
                        
 
                              - 
                                Description: 
                                
                                    Grants permission to end a Session that you created earlier
                                
                              
- 
                                Access: 
                                
                                    Write
                                
                              
- 
                                Resources: 
                                
      
        Name: session
       
        Required: Yes
       
 
- 
                        GetInvocationStep
                        
 
                              - 
                                Description: 
                                
                                    Grants permission to get an invocation step from a session
                                
                              
- 
                                Access: 
                                
                                    Read
                                
                              
- 
                                Resources: 
                                
      
        Name: session
       
        Required: Yes
       
 
- 
                        GetSession
                        
 
                              - 
                                Description: 
                                
                                    Grants permission to retrieve an existing session
                                
                              
- 
                                Access: 
                                
                                    Read
                                
                              
- 
                                Resources: 
                                
      
        Name: session
       
        Required: Yes
       
 
- 
                        ListInvocationSteps
                        
 
                              - 
                                Description: 
                                
                                    Grants permission to get list of invocation step from a session
                                
                              
- 
                                Access: 
                                
                                    List
                                
                              
- 
                                Resources: 
                                
      
        Name: session
       
        Required: Yes
       
 
- 
                        ListInvocations
                        
 
                              - 
                                Description: 
                                
                                    Grants permission to list invocations in a session
                                
                              
- 
                                Access: 
                                
                                    List
                                
                              
- 
                                Resources: 
                                
      
        Name: session
       
        Required: Yes
       
 
- 
                        ListSessions
                        
 
                              - 
                                Description: 
                                
                                    Grants permission to list existing sessions
                                
                              
- 
                                Access: 
                                
                                    List
                                
                              
 
- 
                        PutInvocationStep
                        
 
                              - 
                                Description: 
                                
                                    Grants permission to put an invocation step into an invocation in session
                                
                              
- 
                                Access: 
                                
                                    Write
                                
                              
- 
                                Resources: 
                                
      
        Name: session
       
        Required: Yes
       
 
- 
                        UpdateSession
                        
 
                              - 
                                Description: 
                                
                                    Grants permission to update an existing session
                                
                              
- 
                                Access: 
                                
                                    Write
                                
                              
- 
                                Resources: 
                                
      
        Name: session
       
        Required: Yes
       
 
                Resources
                
                    - 
                        session
                        
 
                              - 
                                Arn: 
                                
                                    arn:${Partition}:bedrock:${Region}:${Account}:session/${SessionId}
                                
                              
- 
                                Conditions: 
                                
    aws:ResourceTag/${TagKey}