Skip to content

Policy: AmazonInspector2ServiceRolePolicy

ARN: arn:aws:iam::aws:policy/aws-service-role/AmazonInspector2ServiceRolePolicy

Allowed Actions

Actions Services
cloudtrail:CreateServiceLinkedChannel cloudtrail
cloudtrail:DeleteServiceLinkedChannel cloudtrail
cloudtrail:ListServiceLinkedChannels cloudtrail
cloudwatch:GetMetricData cloudwatch
cloudwatch:PutMetricData cloudwatch
codeguru-security:BatchGetFindings codeguru-security
codeguru-security:CreateScan codeguru-security
codeguru-security:DeleteScansByCategory codeguru-security
codeguru-security:GetAccountConfiguration codeguru-security
codeguru-security:GetFindings codeguru-security
codeguru-security:GetScan codeguru-security
codeguru-security:ListFindings codeguru-security
directconnect:DescribeConnections directconnect
directconnect:DescribeDirectConnectGatewayAssociations directconnect
directconnect:DescribeDirectConnectGatewayAttachments directconnect
directconnect:DescribeDirectConnectGateways directconnect
directconnect:DescribeVirtualGateways directconnect
directconnect:DescribeVirtualInterfaces directconnect
ec2:DescribeAvailabilityZones ec2
ec2:DescribeCustomerGateways ec2
ec2:DescribeInstances ec2
ec2:DescribeInternetGateways ec2
ec2:DescribeManagedPrefixLists ec2
ec2:DescribeNatGateways ec2
ec2:DescribeNetworkAcls ec2
ec2:DescribeNetworkInterfaces ec2
ec2:DescribePrefixLists ec2
ec2:DescribeRegions ec2
ec2:DescribeRouteTables ec2
ec2:DescribeSecurityGroups ec2
ec2:DescribeSubnets ec2
ec2:DescribeTransitGatewayAttachments ec2
ec2:DescribeTransitGatewayConnects ec2
ec2:DescribeTransitGatewayPeeringAttachments ec2
ec2:DescribeTransitGatewayRouteTables ec2
ec2:DescribeTransitGatewayVpcAttachments ec2
ec2:DescribeTransitGateways ec2
ec2:DescribeVpcEndpointServiceConfigurations ec2
ec2:DescribeVpcEndpoints ec2
ec2:DescribeVpcPeeringConnections ec2
ec2:DescribeVpcs ec2
ec2:DescribeVpnConnections ec2
ec2:DescribeVpnGateways ec2
ec2:GetManagedPrefixListEntries ec2
ec2:GetTransitGatewayRouteTablePropagations ec2
ec2:SearchTransitGatewayRoutes ec2
ecr:BatchGetImage ecr
ecr:BatchGetRepositoryScanningConfiguration ecr
ecr:DescribeImages ecr
ecr:DescribeRegistry ecr
ecr:DescribeRepositories ecr
ecr:GetAuthorizationToken ecr
ecr:GetDownloadUrlForLayer ecr
ecr:GetRegistryScanningConfiguration ecr
ecr:ListImages ecr
ecr:PutRegistryScanningConfiguration ecr
ecs:DescribeTasks ecs
ecs:ListClusters ecs
ecs:ListTasks ecs
eks:ListClusters eks
elasticloadbalancing:DescribeListeners elasticloadbalancing
elasticloadbalancing:DescribeLoadBalancerAttributes elasticloadbalancing
elasticloadbalancing:DescribeLoadBalancers elasticloadbalancing
elasticloadbalancing:DescribeRules elasticloadbalancing
elasticloadbalancing:DescribeTags elasticloadbalancing
elasticloadbalancing:DescribeTargetGroupAttributes elasticloadbalancing
elasticloadbalancing:DescribeTargetGroups elasticloadbalancing
elasticloadbalancing:DescribeTargetHealth elasticloadbalancing
events:DeleteRule events
events:DescribeRule events
events:ListTargetsByRule events
events:PutRule events
events:PutTargets events
events:RemoveTargets events
iam:GetPolicy iam
iam:GetPolicyVersion iam
iam:GetRole iam
iam:GetRolePolicy iam
iam:ListAttachedRolePolicies iam
iam:ListPolicies iam
iam:ListPolicyVersions iam
iam:ListRolePolicies iam
lambda:GetFunction lambda
lambda:GetLayerVersion lambda
lambda:ListFunctions lambda
lambda:ListTags lambda
lambda:ListVersionsByFunction lambda
network-firewall:DescribeFirewall network-firewall
network-firewall:DescribeFirewallPolicy network-firewall
network-firewall:DescribeResourcePolicy network-firewall
network-firewall:DescribeRuleGroup network-firewall
network-firewall:ListFirewallPolicies network-firewall
network-firewall:ListFirewalls network-firewall
network-firewall:ListRuleGroups network-firewall
organizations:DescribeAccount organizations
organizations:DescribeOrganization organizations
organizations:ListAccounts organizations
ssm:CreateAssociation ssm
ssm:CreateResourceDataSync ssm
ssm:DeleteAssociation ssm
ssm:DeleteParameter ssm
ssm:DeleteResourceDataSync ssm
ssm:DescribeAssociation ssm
ssm:DescribeAssociationExecutions ssm
ssm:DescribeInstanceInformation ssm
ssm:GetCommandInvocation ssm
ssm:GetParameters ssm
ssm:ListAssociations ssm
ssm:ListResourceDataSync ssm
ssm:PutParameter ssm
ssm:SendCommand ssm
ssm:SendCommand ssm
ssm:StartAssociationsOnce ssm
ssm:UpdateAssociation ssm
tiros:CreateQuery tiros
tiros:GetQueryAnswer tiros