Policy: AWSNetworkFirewallServiceRolePolicy ARN: arn:aws:iam::aws:policy/aws-service-role/AWSNetworkFirewallServiceRolePolicy Allowed Actions Actions Services acm:DescribeCertificate acm ec2:CreateTags ec2 ec2:CreateVpcEndpoint ec2 ec2:DeleteVpcEndpoints ec2 ec2:DescribeInstances ec2 ec2:DescribeNetworkInterfaces ec2 ec2:DescribeSubnets ec2 ec2:DescribeVpcEndpoints ec2 ec2:DescribeVpcs ec2 resource-groups:ListGroupResources resource-groups tag:GetResources tag