AWS Secrets Manager
(secretsmanager)
IAM Changes
Services
2025-11-22
2025-11-22
3 new conditions | 20 updated actions, 1 updated resource
Additions
Conditions
secretsmanager:ExternalSecretRotationRoleArn
Description:
Filters access by the managed external secret rotation role ARN in the request
Type:
ARN
secretsmanager:Type
Description:
Filters access by the managed external secret type in the request
Type:
String
secretsmanager:resource/Type
Description:
Filters access by the managed external secret type associated with the secret
Type:
String
Updates
Actions
CancelRotateSecret
Conditions
+ secretsmanager:resource/Type
CreateSecret
Conditions
+ secretsmanager:Type
DeleteResourcePolicy
Conditions
+ secretsmanager:resource/Type
DeleteSecret
Conditions
+ secretsmanager:resource/Type
DescribeSecret
Conditions
+ secretsmanager:resource/Type
GetResourcePolicy
Conditions
+ secretsmanager:resource/Type
GetSecretValue
Conditions
+ secretsmanager:resource/Type
ListSecretVersionIds
Conditions
+ secretsmanager:resource/Type
PutResourcePolicy
Conditions
+ secretsmanager:resource/Type
PutSecretValue
Conditions
+ secretsmanager:resource/Type
RemoveRegionsFromReplication
Conditions
+ secretsmanager:resource/Type
ReplicateSecretToRegions
Conditions
+ secretsmanager:resource/Type
RestoreSecret
Conditions
+ secretsmanager:resource/Type
RotateSecret
Conditions
+ secretsmanager:resource/Type
+ secretsmanager:ExternalSecretRotationRoleArn
StopReplicationToReplica
Conditions
+ secretsmanager:resource/Type
TagResource
Conditions
+ secretsmanager:resource/Type
UntagResource
Conditions
+ secretsmanager:resource/Type
UpdateSecret
Conditions
+ secretsmanager:Type
+ secretsmanager:resource/Type
UpdateSecretVersionStage
Conditions
+ secretsmanager:resource/Type
ValidateResourcePolicy
Conditions
+ secretsmanager:resource/Type
Resources
Secret
Conditions
+ secretsmanager:resource/Type