【发布时间】:2020-07-25 22:26:21
【问题描述】:
我想让用户只在允许的子网中运行/停止 ec2 实例,但是下面的代码不起作用:
{
"Effect": "Allow",
"Action": [
"ec2:RunInstances",
"ec2:TerminateInstances",
"ec2:StopInstances",
"ec2:StartInstances",
"ec2:RunScheduledInstances",
"ec2:UnmonitorInstances"
],
"Resource": [
"*"
],
"Condition": {
"ForAnyValue:ArnEquals": {
"ec2:Subnet": [
"arn:aws:ec2:*:*:subnet/subnet-*******",
"arn:aws:ec2:*:*:subnet/subnet-*******",
"arn:aws:ec2:*:*:subnet/subnet-*******"
]
}
}
}
【问题讨论】:
-
请分享代码返回哪种错误
标签: amazon-web-services amazon-ec2 amazon-iam amazon-vpc subnet