aws.s3files-access-point
AWS S3 Files - Access Point
S3 Files access points are EFS-style entry points into a file
system, pinning NFS clients to a POSIX identity and root
directory. They carry no resource policy and no public access
configuration; file system access is governed by the file system
policy (see the cross-account and has-statement
filters on aws.s3files-file-system).
- example:
policies:
- name: s3files-access-point-root-user
resource: aws.s3files-access-point
filters:
- type: value
key: posixUser.uid
value: 0
Filters
Actions
rename-tag
Rename an existing tag key to a new value.
- example:
rename Application, and Bap to App, if a resource has both of the old keys then we’ll use the value specified by Application, which is based on the order of values of old_keys.
policies: - name: rename-tags-example resource: aws.log-group filters: - or: - "tag:Bap": present - "tag:Application": present actions: - type: rename-tag old_keys: [Application, Bap] new_key: App
properties:
new_key:
type: string
old_key:
type: string
old_keys:
items:
type: string
type: array
type:
enum:
- rename-tag
required:
- type
Permissions - tag:TagResources, tag:UntagResources