Skip to content

Service: cognito-idp

Attached Policies

Policy ARN Policy Name
arn:aws:iam::aws:policy/ReadOnlyAccess ReadOnlyAccess
arn:aws:iam::aws:policy/SecurityAudit SecurityAudit
arn:aws:iam::aws:policy/AmazonCognitoReadOnly AmazonCognitoReadOnly
arn:aws:iam::aws:policy/AmazonCognitoPowerUser AmazonCognitoPowerUser
arn:aws:iam::aws:policy/AWSWAFReadOnlyAccess AWSWAFReadOnlyAccess
arn:aws:iam::aws:policy/AWSWAFFullAccess AWSWAFFullAccess
arn:aws:iam::aws:policy/job-function/ViewOnlyAccess ViewOnlyAccess
arn:aws:iam::aws:policy/job-function/SupportUser SupportUser
arn:aws:iam::aws:policy/AmazonSageMakerReadOnly AmazonSageMakerReadOnly
arn:aws:iam::aws:policy/AmazonSageMakerFullAccess AmazonSageMakerFullAccess
arn:aws:iam::aws:policy/AmazonESCognitoAccess AmazonESCognitoAccess
arn:aws:iam::aws:policy/aws-service-role/AWSConfigServiceRolePolicy AWSConfigServiceRolePolicy
arn:aws:iam::aws:policy/aws-service-role/AmazonConnectServiceLinkedRolePolicy AmazonConnectServiceLinkedRolePolicy
arn:aws:iam::aws:policy/ElasticLoadBalancingFullAccess ElasticLoadBalancingFullAccess
arn:aws:iam::aws:policy/AWSWAFConsoleFullAccess AWSWAFConsoleFullAccess
arn:aws:iam::aws:policy/AWSWAFConsoleReadOnlyAccess AWSWAFConsoleReadOnlyAccess
arn:aws:iam::aws:policy/aws-service-role/AmazonCognitoIdpServiceRolePolicy AmazonCognitoIdpServiceRolePolicy
arn:aws:iam::aws:policy/service-role/AWS_ConfigRole AWS_ConfigRole
arn:aws:iam::aws:policy/aws-service-role/AWSSupportServiceRolePolicy AWSSupportServiceRolePolicy
arn:aws:iam::aws:policy/AmazonSageMakerAdmin-ServiceCatalogProductsServiceRolePolicy AmazonSageMakerAdmin-ServiceCatalogProductsServiceRolePolicy
arn:aws:iam::aws:policy/AdministratorAccess-Amplify AdministratorAccess-Amplify
arn:aws:iam::aws:policy/aws-service-role/AWSAuditManagerServiceRolePolicy AWSAuditManagerServiceRolePolicy
arn:aws:iam::aws:policy/AmazonOpenSearchServiceCognitoAccess AmazonOpenSearchServiceCognitoAccess
arn:aws:iam::aws:policy/aws-service-role/AWSResourceExplorerServiceRolePolicy AWSResourceExplorerServiceRolePolicy
arn:aws:iam::aws:policy/ResourceGroupsTaggingAPITagUntagSupportedResources ResourceGroupsTaggingAPITagUntagSupportedResources
arn:aws:iam::aws:policy/AmazonEKSLoadBalancingPolicy AmazonEKSLoadBalancingPolicy
arn:aws:iam::aws:policy/AWSPartnerLedSupportReadOnlyAccess AWSPartnerLedSupportReadOnlyAccess
arn:aws:iam::aws:policy/AIOpsAssistantPolicy AIOpsAssistantPolicy

Allowed Actions

Action Service
cognito-idp:* cognito-idp
cognito-idp:AdminAddUserToGroup cognito-idp
cognito-idp:AdminConfirmSignUp cognito-idp
cognito-idp:AdminCreateUser cognito-idp
cognito-idp:AdminDeleteUser cognito-idp
cognito-idp:AdminDisableUser cognito-idp
cognito-idp:AdminEnableUser cognito-idp
cognito-idp:AdminGet* cognito-idp
cognito-idp:AdminGetUser cognito-idp
cognito-idp:AdminInitiateAuth cognito-idp
cognito-idp:AdminList* cognito-idp
cognito-idp:AdminListGroupsForUser cognito-idp
cognito-idp:AdminListUserAuthEvents cognito-idp
cognito-idp:AdminRemoveUserFromGroup cognito-idp
cognito-idp:AdminResetUserPassword cognito-idp
cognito-idp:AdminSetUserPassword cognito-idp
cognito-idp:AdminUpdateUserAttributes cognito-idp
cognito-idp:AdminUserGlobalSignOut cognito-idp
cognito-idp:AssociateWebACL cognito-idp
cognito-idp:CreateGroup cognito-idp
cognito-idp:CreateUserPool cognito-idp
cognito-idp:CreateUserPoolClient cognito-idp
cognito-idp:CreateUserPoolDomain cognito-idp
cognito-idp:DeleteGroup cognito-idp
cognito-idp:DeleteUser cognito-idp
cognito-idp:DeleteUserPool cognito-idp
cognito-idp:DeleteUserPoolClient cognito-idp
cognito-idp:DeleteUserPoolDomain cognito-idp
cognito-idp:Describe* cognito-idp
cognito-idp:DescribeIdentityProvider cognito-idp
cognito-idp:DescribeResourceServer cognito-idp
cognito-idp:DescribeRiskConfiguration cognito-idp
cognito-idp:DescribeUserImportJob cognito-idp
cognito-idp:DescribeUserPool cognito-idp
cognito-idp:DescribeUserPoolClient cognito-idp
cognito-idp:DescribeUserPoolDomain cognito-idp
cognito-idp:DisassociateWebACL cognito-idp
cognito-idp:Get* cognito-idp
cognito-idp:GetGroup cognito-idp
cognito-idp:GetLogDeliveryConfiguration cognito-idp
cognito-idp:GetUICustomization cognito-idp
cognito-idp:GetUserPoolMfaConfig cognito-idp
cognito-idp:GetWebACLForResource cognito-idp
cognito-idp:List* cognito-idp
cognito-idp:ListDevices cognito-idp
cognito-idp:ListGroups cognito-idp
cognito-idp:ListIdentityProviders cognito-idp
cognito-idp:ListResourceServers cognito-idp
cognito-idp:ListResourcesForWebACL cognito-idp
cognito-idp:ListTagsForResource cognito-idp
cognito-idp:ListUserImportJobs cognito-idp
cognito-idp:ListUserPoolClients cognito-idp
cognito-idp:ListUserPools cognito-idp
cognito-idp:ListUsers cognito-idp
cognito-idp:ListUsersInGroup cognito-idp
cognito-idp:SetUserPoolMfaConfig cognito-idp
cognito-idp:TagResource cognito-idp
cognito-idp:UntagResource cognito-idp
cognito-idp:UpdateUserPool cognito-idp
cognito-idp:UpdateUserPoolClient cognito-idp
cognito-idp:describeIdentityProvider cognito-idp
cognito-idp:describeResourceServer cognito-idp
cognito-idp:describeRiskConfiguration cognito-idp
cognito-idp:describeUserImportJob cognito-idp
cognito-idp:describeUserPool cognito-idp
cognito-idp:describeUserPoolClient cognito-idp
cognito-idp:describeUserPoolDomain cognito-idp
cognito-idp:getGroup cognito-idp
cognito-idp:getUICustomization cognito-idp
cognito-idp:getUserPoolMfaConfig cognito-idp
cognito-idp:listGroups cognito-idp
cognito-idp:listIdentityProviders cognito-idp
cognito-idp:listResourceServers cognito-idp
cognito-idp:listUserImportJobs cognito-idp
cognito-idp:listUserPoolClients cognito-idp
cognito-idp:listUserPools cognito-idp