| Copyright | (c) 2013-2021 Brendan Hay |
|---|---|
| License | Mozilla Public License, v. 2.0. |
| Maintainer | Brendan Hay <brendan.g.hay+amazonka@gmail.com> |
| Stability | auto-generated |
| Portability | non-portable (GHC extensions) |
| Safe Haskell | None |
Amazonka.IAM
Contents
- Service Configuration
- Errors
- CredentialReportNotPresentException
- CredentialReportNotReadyException
- MalformedPolicyDocumentException
- EntityAlreadyExistsException
- MalformedCertificateException
- CredentialReportExpiredException
- UnmodifiableEntityException
- DuplicateCertificateException
- DeleteConflictException
- NoSuchEntityException
- InvalidCertificateException
- PolicyNotAttachableException
- ServiceNotSupportedException
- UnrecognizedPublicKeyEncodingException
- ReportGenerationLimitExceededException
- InvalidUserTypeException
- ServiceFailureException
- ConcurrentModificationException
- InvalidInputException
- InvalidPublicKeyException
- InvalidAuthenticationCodeException
- EntityTemporarilyUnmodifiableException
- DuplicateSSHPublicKeyException
- KeyPairMismatchException
- PolicyEvaluationException
- PasswordPolicyViolationException
- LimitExceededException
- Waiters
- Operations
- GetContextKeysForPrincipalPolicy
- ListPolicies (Paginated)
- CreatePolicy
- ListInstanceProfilesForRole (Paginated)
- AttachGroupPolicy
- CreateAccessKey
- ListRoleTags
- ListSSHPublicKeys (Paginated)
- UntagOpenIDConnectProvider
- ListOpenIDConnectProviders
- CreateVirtualMFADevice
- DeleteAccountPasswordPolicy
- UpdateAccountPasswordPolicy
- AttachRolePolicy
- UpdateSSHPublicKey
- DeleteSSHPublicKey
- GetUserPolicy
- UpdateServiceSpecificCredential
- DeleteServiceSpecificCredential
- ListAttachedRolePolicies (Paginated)
- GetRole
- DeactivateMFADevice
- CreateOpenIDConnectProvider
- DeleteVirtualMFADevice
- ListRoles (Paginated)
- ListUserPolicies (Paginated)
- ListOpenIDConnectProviderTags
- PutRolePermissionsBoundary
- UploadSSHPublicKey
- DeleteRolePermissionsBoundary
- SimulateCustomPolicy (Paginated)
- UpdateRole
- DeleteRole
- ListUsers (Paginated)
- UpdateOpenIDConnectProviderThumbprint
- PutUserPolicy
- TagMFADevice
- GetSSHPublicKey
- UntagUser
- DetachGroupPolicy
- TagInstanceProfile
- GetOpenIDConnectProvider
- PutUserPermissionsBoundary
- DeleteUserPolicy
- TagSAMLProvider
- DeleteUserPermissionsBoundary
- CreateRole
- ResetServiceSpecificCredential
- UntagSAMLProvider
- GetCredentialReport
- ListServerCertificateTags
- GetAccountSummary
- GenerateServiceLastAccessedDetails
- ListPolicyTags
- ListGroupPolicies (Paginated)
- DeletePolicyVersion
- TagUser
- DeleteInstanceProfile
- DetachRolePolicy
- RemoveRoleFromInstanceProfile
- CreatePolicyVersion
- CreateInstanceProfile
- CreateSAMLProvider
- GetAccountAuthorizationDetails (Paginated)
- GetServiceLinkedRoleDeletionStatus
- DeleteAccountAlias
- DetachUserPolicy
- RemoveUserFromGroup
- DeleteGroupPolicy
- TagRole
- PutGroupPolicy
- GetLoginProfile
- GetGroupPolicy
- GenerateOrganizationsAccessReport
- ChangePassword
- ListServerCertificates (Paginated)
- DeleteServiceLinkedRole
- DeletePolicy
- UpdateAssumeRolePolicy
- GetServiceLastAccessedDetailsWithEntities
- UntagServerCertificate
- GetInstanceProfile
- CreateLoginProfile
- GetSAMLProvider
- AddRoleToInstanceProfile
- ListGroupsForUser (Paginated)
- ListEntitiesForPolicy (Paginated)
- AddUserToGroup
- TagOpenIDConnectProvider
- SimulatePrincipalPolicy (Paginated)
- GetOrganizationsAccessReport
- GetPolicyVersion
- CreateServiceLinkedRole
- ListServiceSpecificCredentials
- DeleteOpenIDConnectProvider
- GetUser
- ListSigningCertificates (Paginated)
- DeleteSigningCertificate
- UpdateSigningCertificate
- ListAttachedUserPolicies (Paginated)
- RemoveClientIDFromOpenIDConnectProvider
- AttachUserPolicy
- TagPolicy
- CreateServiceSpecificCredential
- ListVirtualMFADevices (Paginated)
- ResyncMFADevice
- TagServerCertificate
- DeleteAccessKey
- UpdateAccessKey
- ListUserTags (Paginated)
- ListAccessKeys (Paginated)
- GetRolePolicy
- SetSecurityTokenServicePreferences
- UntagRole
- CreateUser
- PutRolePolicy
- GetContextKeysForCustomPolicy
- UploadSigningCertificate
- DeleteRolePolicy
- GetAccountPasswordPolicy
- GetAccessKeyLastUsed
- UpdateUser
- DeleteUser
- AddClientIDToOpenIDConnectProvider
- ListRolePolicies (Paginated)
- CreateAccountAlias
- ListPoliciesGrantingServiceAccess
- ListInstanceProfiles (Paginated)
- EnableMFADevice
- ListAccountAliases (Paginated)
- DeleteSAMLProvider
- UpdateSAMLProvider
- UntagMFADevice
- CreateGroup
- ListMFADevices (Paginated)
- UntagInstanceProfile
- UploadServerCertificate
- SetDefaultPolicyVersion
- ListPolicyVersions (Paginated)
- UpdateRoleDescription
- ListSAMLProviders
- GetServiceLastAccessedDetails
- GetServerCertificate
- DeleteGroup
- UpdateGroup
- ListGroups (Paginated)
- GenerateCredentialReport
- GetPolicy
- ListInstanceProfileTags
- UpdateLoginProfile
- DeleteLoginProfile
- ListSAMLProviderTags
- GetGroup (Paginated)
- UntagPolicy
- DeleteServerCertificate
- UpdateServerCertificate
- ListAttachedGroupPolicies (Paginated)
- ListMFADeviceTags
- Types
- AccessAdvisorUsageGranularityType
- AssignmentStatusType
- ContextKeyTypeEnum
- DeletionTaskStatusType
- EncodingType
- EntityType
- GlobalEndpointTokenVersion
- JobStatusType
- PermissionsBoundaryAttachmentType
- PolicyEvaluationDecisionType
- PolicyOwnerEntityType
- PolicyScopeType
- PolicySourceType
- PolicyType
- PolicyUsageType
- ReportFormatType
- ReportStateType
- SortKeyType
- StatusType
- SummaryKeyType
- AccessDetail
- AccessKeyInfo
- AccessKeyLastUsed
- AccessKeyMetadata
- AttachedPermissionsBoundary
- AttachedPolicy
- ContextEntry
- DeletionTaskFailureReasonType
- EntityDetails
- EntityInfo
- ErrorDetails
- EvaluationResult
- GetContextKeysForPolicyResponse
- Group
- GroupDetail
- InstanceProfile
- ListPoliciesGrantingServiceAccessEntry
- LoginProfile
- MFADevice
- ManagedPolicyDetail
- OpenIDConnectProviderListEntry
- OrganizationsDecisionDetail
- PasswordPolicy
- PermissionsBoundaryDecisionDetail
- Policy
- PolicyDetail
- PolicyGrantingServiceAccess
- PolicyGroup
- PolicyRole
- PolicyUser
- PolicyVersion
- Position
- ResourceSpecificResult
- Role
- RoleDetail
- RoleLastUsed
- RoleUsageType
- SAMLProviderListEntry
- SSHPublicKey
- SSHPublicKeyMetadata
- ServerCertificate
- ServerCertificateMetadata
- ServiceLastAccessed
- ServiceSpecificCredential
- ServiceSpecificCredentialMetadata
- SigningCertificate
- SimulatePolicyResponse
- Statement
- Tag
- TrackedActionLastAccessed
- User
- UserDetail
- VirtualMFADevice
Description
Derived from API version 2010-05-08 of the AWS service descriptions, licensed under Apache 2.0.
Identity and Access Management
Identity and Access Management (IAM) is a web service for securely controlling access to Amazon Web Services services. With IAM, you can centrally manage users, security credentials such as access keys, and permissions that control which Amazon Web Services resources users and applications can access. For more information about IAM, see Identity and Access Management (IAM) and the Identity and Access Management User Guide.
Synopsis
- defaultService :: Service
- _CredentialReportNotPresentException :: AsError a => Getting (First ServiceError) a ServiceError
- _CredentialReportNotReadyException :: AsError a => Getting (First ServiceError) a ServiceError
- _MalformedPolicyDocumentException :: AsError a => Getting (First ServiceError) a ServiceError
- _EntityAlreadyExistsException :: AsError a => Getting (First ServiceError) a ServiceError
- _MalformedCertificateException :: AsError a => Getting (First ServiceError) a ServiceError
- _CredentialReportExpiredException :: AsError a => Getting (First ServiceError) a ServiceError
- _UnmodifiableEntityException :: AsError a => Getting (First ServiceError) a ServiceError
- _DuplicateCertificateException :: AsError a => Getting (First ServiceError) a ServiceError
- _DeleteConflictException :: AsError a => Getting (First ServiceError) a ServiceError
- _NoSuchEntityException :: AsError a => Getting (First ServiceError) a ServiceError
- _InvalidCertificateException :: AsError a => Getting (First ServiceError) a ServiceError
- _PolicyNotAttachableException :: AsError a => Getting (First ServiceError) a ServiceError
- _ServiceNotSupportedException :: AsError a => Getting (First ServiceError) a ServiceError
- _UnrecognizedPublicKeyEncodingException :: AsError a => Getting (First ServiceError) a ServiceError
- _ReportGenerationLimitExceededException :: AsError a => Getting (First ServiceError) a ServiceError
- _InvalidUserTypeException :: AsError a => Getting (First ServiceError) a ServiceError
- _ServiceFailureException :: AsError a => Getting (First ServiceError) a ServiceError
- _ConcurrentModificationException :: AsError a => Getting (First ServiceError) a ServiceError
- _InvalidInputException :: AsError a => Getting (First ServiceError) a ServiceError
- _InvalidPublicKeyException :: AsError a => Getting (First ServiceError) a ServiceError
- _InvalidAuthenticationCodeException :: AsError a => Getting (First ServiceError) a ServiceError
- _EntityTemporarilyUnmodifiableException :: AsError a => Getting (First ServiceError) a ServiceError
- _DuplicateSSHPublicKeyException :: AsError a => Getting (First ServiceError) a ServiceError
- _KeyPairMismatchException :: AsError a => Getting (First ServiceError) a ServiceError
- _PolicyEvaluationException :: AsError a => Getting (First ServiceError) a ServiceError
- _PasswordPolicyViolationException :: AsError a => Getting (First ServiceError) a ServiceError
- _LimitExceededException :: AsError a => Getting (First ServiceError) a ServiceError
- newInstanceProfileExists :: Wait GetInstanceProfile
- newUserExists :: Wait GetUser
- newRoleExists :: Wait GetRole
- newPolicyExists :: Wait GetPolicy
- data GetContextKeysForPrincipalPolicy = GetContextKeysForPrincipalPolicy' (Maybe [Text]) Text
- newGetContextKeysForPrincipalPolicy :: Text -> GetContextKeysForPrincipalPolicy
- data GetContextKeysForPolicyResponse = GetContextKeysForPolicyResponse' (Maybe [Text])
- newGetContextKeysForPolicyResponse :: GetContextKeysForPolicyResponse
- data ListPolicies = ListPolicies' (Maybe Text) (Maybe Bool) (Maybe Text) (Maybe PolicyScopeType) (Maybe Natural) (Maybe PolicyUsageType)
- newListPolicies :: ListPolicies
- data ListPoliciesResponse = ListPoliciesResponse' (Maybe Text) (Maybe Bool) (Maybe [Policy]) Int
- newListPoliciesResponse :: Int -> ListPoliciesResponse
- data CreatePolicy = CreatePolicy' (Maybe Text) (Maybe Text) (Maybe [Tag]) Text Text
- newCreatePolicy :: Text -> Text -> CreatePolicy
- data CreatePolicyResponse = CreatePolicyResponse' (Maybe Policy) Int
- newCreatePolicyResponse :: Int -> CreatePolicyResponse
- data ListInstanceProfilesForRole = ListInstanceProfilesForRole' (Maybe Text) (Maybe Natural) Text
- newListInstanceProfilesForRole :: Text -> ListInstanceProfilesForRole
- data ListInstanceProfilesForRoleResponse = ListInstanceProfilesForRoleResponse' (Maybe Text) (Maybe Bool) Int [InstanceProfile]
- newListInstanceProfilesForRoleResponse :: Int -> ListInstanceProfilesForRoleResponse
- data AttachGroupPolicy = AttachGroupPolicy' Text Text
- newAttachGroupPolicy :: Text -> Text -> AttachGroupPolicy
- data AttachGroupPolicyResponse = AttachGroupPolicyResponse' {
- newAttachGroupPolicyResponse :: AttachGroupPolicyResponse
- data CreateAccessKey = CreateAccessKey' (Maybe Text)
- newCreateAccessKey :: CreateAccessKey
- data CreateAccessKeyResponse = CreateAccessKeyResponse' Int AccessKeyInfo
- newCreateAccessKeyResponse :: Int -> AccessKeyInfo -> CreateAccessKeyResponse
- data ListRoleTags = ListRoleTags' (Maybe Text) (Maybe Natural) Text
- newListRoleTags :: Text -> ListRoleTags
- data ListRoleTagsResponse = ListRoleTagsResponse' (Maybe Text) (Maybe Bool) Int [Tag]
- newListRoleTagsResponse :: Int -> ListRoleTagsResponse
- data ListSSHPublicKeys = ListSSHPublicKeys' (Maybe Text) (Maybe Text) (Maybe Natural)
- newListSSHPublicKeys :: ListSSHPublicKeys
- data ListSSHPublicKeysResponse = ListSSHPublicKeysResponse' (Maybe [SSHPublicKeyMetadata]) (Maybe Text) (Maybe Bool) Int
- newListSSHPublicKeysResponse :: Int -> ListSSHPublicKeysResponse
- data UntagOpenIDConnectProvider = UntagOpenIDConnectProvider' Text [Text]
- newUntagOpenIDConnectProvider :: Text -> UntagOpenIDConnectProvider
- data UntagOpenIDConnectProviderResponse = UntagOpenIDConnectProviderResponse' {
- newUntagOpenIDConnectProviderResponse :: UntagOpenIDConnectProviderResponse
- data ListOpenIDConnectProviders = ListOpenIDConnectProviders' {
- newListOpenIDConnectProviders :: ListOpenIDConnectProviders
- data ListOpenIDConnectProvidersResponse = ListOpenIDConnectProvidersResponse' (Maybe [OpenIDConnectProviderListEntry]) Int
- newListOpenIDConnectProvidersResponse :: Int -> ListOpenIDConnectProvidersResponse
- data CreateVirtualMFADevice = CreateVirtualMFADevice' (Maybe Text) (Maybe [Tag]) Text
- newCreateVirtualMFADevice :: Text -> CreateVirtualMFADevice
- data CreateVirtualMFADeviceResponse = CreateVirtualMFADeviceResponse' Int VirtualMFADevice
- newCreateVirtualMFADeviceResponse :: Int -> VirtualMFADevice -> CreateVirtualMFADeviceResponse
- data DeleteAccountPasswordPolicy = DeleteAccountPasswordPolicy' {
- newDeleteAccountPasswordPolicy :: DeleteAccountPasswordPolicy
- data DeleteAccountPasswordPolicyResponse = DeleteAccountPasswordPolicyResponse' {
- newDeleteAccountPasswordPolicyResponse :: DeleteAccountPasswordPolicyResponse
- data UpdateAccountPasswordPolicy = UpdateAccountPasswordPolicy' (Maybe Natural) (Maybe Bool) (Maybe Natural) (Maybe Bool) (Maybe Natural) (Maybe Bool) (Maybe Bool) (Maybe Bool) (Maybe Bool)
- newUpdateAccountPasswordPolicy :: UpdateAccountPasswordPolicy
- data UpdateAccountPasswordPolicyResponse = UpdateAccountPasswordPolicyResponse' {
- newUpdateAccountPasswordPolicyResponse :: UpdateAccountPasswordPolicyResponse
- data AttachRolePolicy = AttachRolePolicy' Text Text
- newAttachRolePolicy :: Text -> Text -> AttachRolePolicy
- data AttachRolePolicyResponse = AttachRolePolicyResponse' {
- newAttachRolePolicyResponse :: AttachRolePolicyResponse
- data UpdateSSHPublicKey = UpdateSSHPublicKey' Text Text StatusType
- newUpdateSSHPublicKey :: Text -> Text -> StatusType -> UpdateSSHPublicKey
- data UpdateSSHPublicKeyResponse = UpdateSSHPublicKeyResponse' {
- newUpdateSSHPublicKeyResponse :: UpdateSSHPublicKeyResponse
- data DeleteSSHPublicKey = DeleteSSHPublicKey' Text Text
- newDeleteSSHPublicKey :: Text -> Text -> DeleteSSHPublicKey
- data DeleteSSHPublicKeyResponse = DeleteSSHPublicKeyResponse' {
- newDeleteSSHPublicKeyResponse :: DeleteSSHPublicKeyResponse
- data GetUserPolicy = GetUserPolicy' Text Text
- newGetUserPolicy :: Text -> Text -> GetUserPolicy
- data GetUserPolicyResponse = GetUserPolicyResponse' Int Text Text Text
- newGetUserPolicyResponse :: Int -> Text -> Text -> Text -> GetUserPolicyResponse
- data UpdateServiceSpecificCredential = UpdateServiceSpecificCredential' (Maybe Text) Text StatusType
- newUpdateServiceSpecificCredential :: Text -> StatusType -> UpdateServiceSpecificCredential
- data UpdateServiceSpecificCredentialResponse = UpdateServiceSpecificCredentialResponse' {
- newUpdateServiceSpecificCredentialResponse :: UpdateServiceSpecificCredentialResponse
- data DeleteServiceSpecificCredential = DeleteServiceSpecificCredential' (Maybe Text) Text
- newDeleteServiceSpecificCredential :: Text -> DeleteServiceSpecificCredential
- data DeleteServiceSpecificCredentialResponse = DeleteServiceSpecificCredentialResponse' {
- newDeleteServiceSpecificCredentialResponse :: DeleteServiceSpecificCredentialResponse
- data ListAttachedRolePolicies = ListAttachedRolePolicies' (Maybe Text) (Maybe Text) (Maybe Natural) Text
- newListAttachedRolePolicies :: Text -> ListAttachedRolePolicies
- data ListAttachedRolePoliciesResponse = ListAttachedRolePoliciesResponse' (Maybe [AttachedPolicy]) (Maybe Text) (Maybe Bool) Int
- newListAttachedRolePoliciesResponse :: Int -> ListAttachedRolePoliciesResponse
- data GetRole = GetRole' Text
- newGetRole :: Text -> GetRole
- data GetRoleResponse = GetRoleResponse' Int Role
- newGetRoleResponse :: Int -> Role -> GetRoleResponse
- data DeactivateMFADevice = DeactivateMFADevice' Text Text
- newDeactivateMFADevice :: Text -> Text -> DeactivateMFADevice
- data DeactivateMFADeviceResponse = DeactivateMFADeviceResponse' {
- newDeactivateMFADeviceResponse :: DeactivateMFADeviceResponse
- data CreateOpenIDConnectProvider = CreateOpenIDConnectProvider' (Maybe [Text]) (Maybe [Tag]) Text [Text]
- newCreateOpenIDConnectProvider :: Text -> CreateOpenIDConnectProvider
- data CreateOpenIDConnectProviderResponse = CreateOpenIDConnectProviderResponse' (Maybe Text) (Maybe [Tag]) Int
- newCreateOpenIDConnectProviderResponse :: Int -> CreateOpenIDConnectProviderResponse
- data DeleteVirtualMFADevice = DeleteVirtualMFADevice' Text
- newDeleteVirtualMFADevice :: Text -> DeleteVirtualMFADevice
- data DeleteVirtualMFADeviceResponse = DeleteVirtualMFADeviceResponse' {
- newDeleteVirtualMFADeviceResponse :: DeleteVirtualMFADeviceResponse
- data ListRoles = ListRoles' (Maybe Text) (Maybe Text) (Maybe Natural)
- newListRoles :: ListRoles
- data ListRolesResponse = ListRolesResponse' (Maybe Text) (Maybe Bool) Int [Role]
- newListRolesResponse :: Int -> ListRolesResponse
- data ListUserPolicies = ListUserPolicies' (Maybe Text) (Maybe Natural) Text
- newListUserPolicies :: Text -> ListUserPolicies
- data ListUserPoliciesResponse = ListUserPoliciesResponse' (Maybe Text) (Maybe Bool) Int [Text]
- newListUserPoliciesResponse :: Int -> ListUserPoliciesResponse
- data ListOpenIDConnectProviderTags = ListOpenIDConnectProviderTags' (Maybe Text) (Maybe Natural) Text
- newListOpenIDConnectProviderTags :: Text -> ListOpenIDConnectProviderTags
- data ListOpenIDConnectProviderTagsResponse = ListOpenIDConnectProviderTagsResponse' (Maybe Text) (Maybe Bool) Int [Tag]
- newListOpenIDConnectProviderTagsResponse :: Int -> ListOpenIDConnectProviderTagsResponse
- data PutRolePermissionsBoundary = PutRolePermissionsBoundary' Text Text
- newPutRolePermissionsBoundary :: Text -> Text -> PutRolePermissionsBoundary
- data PutRolePermissionsBoundaryResponse = PutRolePermissionsBoundaryResponse' {
- newPutRolePermissionsBoundaryResponse :: PutRolePermissionsBoundaryResponse
- data UploadSSHPublicKey = UploadSSHPublicKey' Text Text
- newUploadSSHPublicKey :: Text -> Text -> UploadSSHPublicKey
- data UploadSSHPublicKeyResponse = UploadSSHPublicKeyResponse' (Maybe SSHPublicKey) Int
- newUploadSSHPublicKeyResponse :: Int -> UploadSSHPublicKeyResponse
- data DeleteRolePermissionsBoundary = DeleteRolePermissionsBoundary' Text
- newDeleteRolePermissionsBoundary :: Text -> DeleteRolePermissionsBoundary
- data DeleteRolePermissionsBoundaryResponse = DeleteRolePermissionsBoundaryResponse' {
- newDeleteRolePermissionsBoundaryResponse :: DeleteRolePermissionsBoundaryResponse
- data SimulateCustomPolicy = SimulateCustomPolicy' (Maybe Text) (Maybe Text) (Maybe Text) (Maybe [Text]) (Maybe [Text]) (Maybe Text) (Maybe Natural) (Maybe [ContextEntry]) (Maybe Text) [Text] [Text]
- newSimulateCustomPolicy :: SimulateCustomPolicy
- data SimulatePolicyResponse = SimulatePolicyResponse' (Maybe [EvaluationResult]) (Maybe Text) (Maybe Bool)
- newSimulatePolicyResponse :: SimulatePolicyResponse
- data UpdateRole = UpdateRole' (Maybe Natural) (Maybe Text) Text
- newUpdateRole :: Text -> UpdateRole
- data UpdateRoleResponse = UpdateRoleResponse' Int
- newUpdateRoleResponse :: Int -> UpdateRoleResponse
- data DeleteRole = DeleteRole' Text
- newDeleteRole :: Text -> DeleteRole
- data DeleteRoleResponse = DeleteRoleResponse' {
- newDeleteRoleResponse :: DeleteRoleResponse
- data ListUsers = ListUsers' (Maybe Text) (Maybe Text) (Maybe Natural)
- newListUsers :: ListUsers
- data ListUsersResponse = ListUsersResponse' (Maybe Text) (Maybe Bool) Int [User]
- newListUsersResponse :: Int -> ListUsersResponse
- data UpdateOpenIDConnectProviderThumbprint = UpdateOpenIDConnectProviderThumbprint' Text [Text]
- newUpdateOpenIDConnectProviderThumbprint :: Text -> UpdateOpenIDConnectProviderThumbprint
- data UpdateOpenIDConnectProviderThumbprintResponse = UpdateOpenIDConnectProviderThumbprintResponse' {
- newUpdateOpenIDConnectProviderThumbprintResponse :: UpdateOpenIDConnectProviderThumbprintResponse
- data PutUserPolicy = PutUserPolicy' Text Text Text
- newPutUserPolicy :: Text -> Text -> Text -> PutUserPolicy
- data PutUserPolicyResponse = PutUserPolicyResponse' {
- newPutUserPolicyResponse :: PutUserPolicyResponse
- data TagMFADevice = TagMFADevice' Text [Tag]
- newTagMFADevice :: Text -> TagMFADevice
- data TagMFADeviceResponse = TagMFADeviceResponse' {
- newTagMFADeviceResponse :: TagMFADeviceResponse
- data GetSSHPublicKey = GetSSHPublicKey' Text Text EncodingType
- newGetSSHPublicKey :: Text -> Text -> EncodingType -> GetSSHPublicKey
- data GetSSHPublicKeyResponse = GetSSHPublicKeyResponse' (Maybe SSHPublicKey) Int
- newGetSSHPublicKeyResponse :: Int -> GetSSHPublicKeyResponse
- data UntagUser = UntagUser' Text [Text]
- newUntagUser :: Text -> UntagUser
- data UntagUserResponse = UntagUserResponse' {
- newUntagUserResponse :: UntagUserResponse
- data DetachGroupPolicy = DetachGroupPolicy' Text Text
- newDetachGroupPolicy :: Text -> Text -> DetachGroupPolicy
- data DetachGroupPolicyResponse = DetachGroupPolicyResponse' {
- newDetachGroupPolicyResponse :: DetachGroupPolicyResponse
- data TagInstanceProfile = TagInstanceProfile' Text [Tag]
- newTagInstanceProfile :: Text -> TagInstanceProfile
- data TagInstanceProfileResponse = TagInstanceProfileResponse' {
- newTagInstanceProfileResponse :: TagInstanceProfileResponse
- data GetOpenIDConnectProvider = GetOpenIDConnectProvider' Text
- newGetOpenIDConnectProvider :: Text -> GetOpenIDConnectProvider
- data GetOpenIDConnectProviderResponse = GetOpenIDConnectProviderResponse' (Maybe ISO8601) (Maybe Text) (Maybe [Text]) (Maybe [Text]) (Maybe [Tag]) Int
- newGetOpenIDConnectProviderResponse :: Int -> GetOpenIDConnectProviderResponse
- data PutUserPermissionsBoundary = PutUserPermissionsBoundary' Text Text
- newPutUserPermissionsBoundary :: Text -> Text -> PutUserPermissionsBoundary
- data PutUserPermissionsBoundaryResponse = PutUserPermissionsBoundaryResponse' {
- newPutUserPermissionsBoundaryResponse :: PutUserPermissionsBoundaryResponse
- data DeleteUserPolicy = DeleteUserPolicy' Text Text
- newDeleteUserPolicy :: Text -> Text -> DeleteUserPolicy
- data DeleteUserPolicyResponse = DeleteUserPolicyResponse' {
- newDeleteUserPolicyResponse :: DeleteUserPolicyResponse
- data TagSAMLProvider = TagSAMLProvider' Text [Tag]
- newTagSAMLProvider :: Text -> TagSAMLProvider
- data TagSAMLProviderResponse = TagSAMLProviderResponse' {
- newTagSAMLProviderResponse :: TagSAMLProviderResponse
- data DeleteUserPermissionsBoundary = DeleteUserPermissionsBoundary' Text
- newDeleteUserPermissionsBoundary :: Text -> DeleteUserPermissionsBoundary
- data DeleteUserPermissionsBoundaryResponse = DeleteUserPermissionsBoundaryResponse' {
- newDeleteUserPermissionsBoundaryResponse :: DeleteUserPermissionsBoundaryResponse
- data CreateRole = CreateRole' (Maybe Natural) (Maybe Text) (Maybe Text) (Maybe Text) (Maybe [Tag]) Text Text
- newCreateRole :: Text -> Text -> CreateRole
- data CreateRoleResponse = CreateRoleResponse' Int Role
- newCreateRoleResponse :: Int -> Role -> CreateRoleResponse
- data ResetServiceSpecificCredential = ResetServiceSpecificCredential' (Maybe Text) Text
- newResetServiceSpecificCredential :: Text -> ResetServiceSpecificCredential
- data ResetServiceSpecificCredentialResponse = ResetServiceSpecificCredentialResponse' (Maybe ServiceSpecificCredential) Int
- newResetServiceSpecificCredentialResponse :: Int -> ResetServiceSpecificCredentialResponse
- data UntagSAMLProvider = UntagSAMLProvider' Text [Text]
- newUntagSAMLProvider :: Text -> UntagSAMLProvider
- data UntagSAMLProviderResponse = UntagSAMLProviderResponse' {
- newUntagSAMLProviderResponse :: UntagSAMLProviderResponse
- data GetCredentialReport = GetCredentialReport' {
- newGetCredentialReport :: GetCredentialReport
- data GetCredentialReportResponse = GetCredentialReportResponse' (Maybe Base64) (Maybe ISO8601) (Maybe ReportFormatType) Int
- newGetCredentialReportResponse :: Int -> GetCredentialReportResponse
- data ListServerCertificateTags = ListServerCertificateTags' (Maybe Text) (Maybe Natural) Text
- newListServerCertificateTags :: Text -> ListServerCertificateTags
- data ListServerCertificateTagsResponse = ListServerCertificateTagsResponse' (Maybe Text) (Maybe Bool) Int [Tag]
- newListServerCertificateTagsResponse :: Int -> ListServerCertificateTagsResponse
- data GetAccountSummary = GetAccountSummary' {
- newGetAccountSummary :: GetAccountSummary
- data GetAccountSummaryResponse = GetAccountSummaryResponse' (Maybe (HashMap SummaryKeyType Int)) Int
- newGetAccountSummaryResponse :: Int -> GetAccountSummaryResponse
- data GenerateServiceLastAccessedDetails = GenerateServiceLastAccessedDetails' (Maybe AccessAdvisorUsageGranularityType) Text
- newGenerateServiceLastAccessedDetails :: Text -> GenerateServiceLastAccessedDetails
- data GenerateServiceLastAccessedDetailsResponse = GenerateServiceLastAccessedDetailsResponse' (Maybe Text) Int
- newGenerateServiceLastAccessedDetailsResponse :: Int -> GenerateServiceLastAccessedDetailsResponse
- data ListPolicyTags = ListPolicyTags' (Maybe Text) (Maybe Natural) Text
- newListPolicyTags :: Text -> ListPolicyTags
- data ListPolicyTagsResponse = ListPolicyTagsResponse' (Maybe Text) (Maybe Bool) Int [Tag]
- newListPolicyTagsResponse :: Int -> ListPolicyTagsResponse
- data ListGroupPolicies = ListGroupPolicies' (Maybe Text) (Maybe Natural) Text
- newListGroupPolicies :: Text -> ListGroupPolicies
- data ListGroupPoliciesResponse = ListGroupPoliciesResponse' (Maybe Text) (Maybe Bool) Int [Text]
- newListGroupPoliciesResponse :: Int -> ListGroupPoliciesResponse
- data DeletePolicyVersion = DeletePolicyVersion' Text Text
- newDeletePolicyVersion :: Text -> Text -> DeletePolicyVersion
- data DeletePolicyVersionResponse = DeletePolicyVersionResponse' {
- newDeletePolicyVersionResponse :: DeletePolicyVersionResponse
- data TagUser = TagUser' Text [Tag]
- newTagUser :: Text -> TagUser
- data TagUserResponse = TagUserResponse' {
- newTagUserResponse :: TagUserResponse
- data DeleteInstanceProfile = DeleteInstanceProfile' Text
- newDeleteInstanceProfile :: Text -> DeleteInstanceProfile
- data DeleteInstanceProfileResponse = DeleteInstanceProfileResponse' {
- newDeleteInstanceProfileResponse :: DeleteInstanceProfileResponse
- data DetachRolePolicy = DetachRolePolicy' Text Text
- newDetachRolePolicy :: Text -> Text -> DetachRolePolicy
- data DetachRolePolicyResponse = DetachRolePolicyResponse' {
- newDetachRolePolicyResponse :: DetachRolePolicyResponse
- data RemoveRoleFromInstanceProfile = RemoveRoleFromInstanceProfile' Text Text
- newRemoveRoleFromInstanceProfile :: Text -> Text -> RemoveRoleFromInstanceProfile
- data RemoveRoleFromInstanceProfileResponse = RemoveRoleFromInstanceProfileResponse' {
- newRemoveRoleFromInstanceProfileResponse :: RemoveRoleFromInstanceProfileResponse
- data CreatePolicyVersion = CreatePolicyVersion' (Maybe Bool) Text Text
- newCreatePolicyVersion :: Text -> Text -> CreatePolicyVersion
- data CreatePolicyVersionResponse = CreatePolicyVersionResponse' (Maybe PolicyVersion) Int
- newCreatePolicyVersionResponse :: Int -> CreatePolicyVersionResponse
- data CreateInstanceProfile = CreateInstanceProfile' (Maybe Text) (Maybe [Tag]) Text
- newCreateInstanceProfile :: Text -> CreateInstanceProfile
- data CreateInstanceProfileResponse = CreateInstanceProfileResponse' Int InstanceProfile
- newCreateInstanceProfileResponse :: Int -> InstanceProfile -> CreateInstanceProfileResponse
- data CreateSAMLProvider = CreateSAMLProvider' (Maybe [Tag]) Text Text
- newCreateSAMLProvider :: Text -> Text -> CreateSAMLProvider
- data CreateSAMLProviderResponse = CreateSAMLProviderResponse' (Maybe Text) (Maybe [Tag]) Int
- newCreateSAMLProviderResponse :: Int -> CreateSAMLProviderResponse
- data GetAccountAuthorizationDetails = GetAccountAuthorizationDetails' (Maybe Text) (Maybe Natural) (Maybe [EntityType])
- newGetAccountAuthorizationDetails :: GetAccountAuthorizationDetails
- data GetAccountAuthorizationDetailsResponse = GetAccountAuthorizationDetailsResponse' (Maybe [RoleDetail]) (Maybe [GroupDetail]) (Maybe [UserDetail]) (Maybe Text) (Maybe Bool) (Maybe [ManagedPolicyDetail]) Int
- newGetAccountAuthorizationDetailsResponse :: Int -> GetAccountAuthorizationDetailsResponse
- data GetServiceLinkedRoleDeletionStatus = GetServiceLinkedRoleDeletionStatus' Text
- newGetServiceLinkedRoleDeletionStatus :: Text -> GetServiceLinkedRoleDeletionStatus
- data GetServiceLinkedRoleDeletionStatusResponse = GetServiceLinkedRoleDeletionStatusResponse' (Maybe DeletionTaskFailureReasonType) Int DeletionTaskStatusType
- newGetServiceLinkedRoleDeletionStatusResponse :: Int -> DeletionTaskStatusType -> GetServiceLinkedRoleDeletionStatusResponse
- data DeleteAccountAlias = DeleteAccountAlias' Text
- newDeleteAccountAlias :: Text -> DeleteAccountAlias
- data DeleteAccountAliasResponse = DeleteAccountAliasResponse' {
- newDeleteAccountAliasResponse :: DeleteAccountAliasResponse
- data DetachUserPolicy = DetachUserPolicy' Text Text
- newDetachUserPolicy :: Text -> Text -> DetachUserPolicy
- data DetachUserPolicyResponse = DetachUserPolicyResponse' {
- newDetachUserPolicyResponse :: DetachUserPolicyResponse
- data RemoveUserFromGroup = RemoveUserFromGroup' Text Text
- newRemoveUserFromGroup :: Text -> Text -> RemoveUserFromGroup
- data RemoveUserFromGroupResponse = RemoveUserFromGroupResponse' {
- newRemoveUserFromGroupResponse :: RemoveUserFromGroupResponse
- data DeleteGroupPolicy = DeleteGroupPolicy' Text Text
- newDeleteGroupPolicy :: Text -> Text -> DeleteGroupPolicy
- data DeleteGroupPolicyResponse = DeleteGroupPolicyResponse' {
- newDeleteGroupPolicyResponse :: DeleteGroupPolicyResponse
- data TagRole = TagRole' Text [Tag]
- newTagRole :: Text -> TagRole
- data TagRoleResponse = TagRoleResponse' {
- newTagRoleResponse :: TagRoleResponse
- data PutGroupPolicy = PutGroupPolicy' Text Text Text
- newPutGroupPolicy :: Text -> Text -> Text -> PutGroupPolicy
- data PutGroupPolicyResponse = PutGroupPolicyResponse' {
- newPutGroupPolicyResponse :: PutGroupPolicyResponse
- data GetLoginProfile = GetLoginProfile' Text
- newGetLoginProfile :: Text -> GetLoginProfile
- data GetLoginProfileResponse = GetLoginProfileResponse' Int LoginProfile
- newGetLoginProfileResponse :: Int -> LoginProfile -> GetLoginProfileResponse
- data GetGroupPolicy = GetGroupPolicy' Text Text
- newGetGroupPolicy :: Text -> Text -> GetGroupPolicy
- data GetGroupPolicyResponse = GetGroupPolicyResponse' Int Text Text Text
- newGetGroupPolicyResponse :: Int -> Text -> Text -> Text -> GetGroupPolicyResponse
- data GenerateOrganizationsAccessReport = GenerateOrganizationsAccessReport' (Maybe Text) Text
- newGenerateOrganizationsAccessReport :: Text -> GenerateOrganizationsAccessReport
- data GenerateOrganizationsAccessReportResponse = GenerateOrganizationsAccessReportResponse' (Maybe Text) Int
- newGenerateOrganizationsAccessReportResponse :: Int -> GenerateOrganizationsAccessReportResponse
- data ChangePassword = ChangePassword' (Sensitive Text) (Sensitive Text)
- newChangePassword :: Text -> Text -> ChangePassword
- data ChangePasswordResponse = ChangePasswordResponse' {
- newChangePasswordResponse :: ChangePasswordResponse
- data ListServerCertificates = ListServerCertificates' (Maybe Text) (Maybe Text) (Maybe Natural)
- newListServerCertificates :: ListServerCertificates
- data ListServerCertificatesResponse = ListServerCertificatesResponse' (Maybe Text) (Maybe Bool) Int [ServerCertificateMetadata]
- newListServerCertificatesResponse :: Int -> ListServerCertificatesResponse
- data DeleteServiceLinkedRole = DeleteServiceLinkedRole' Text
- newDeleteServiceLinkedRole :: Text -> DeleteServiceLinkedRole
- data DeleteServiceLinkedRoleResponse = DeleteServiceLinkedRoleResponse' Int Text
- newDeleteServiceLinkedRoleResponse :: Int -> Text -> DeleteServiceLinkedRoleResponse
- data DeletePolicy = DeletePolicy' Text
- newDeletePolicy :: Text -> DeletePolicy
- data DeletePolicyResponse = DeletePolicyResponse' {
- newDeletePolicyResponse :: DeletePolicyResponse
- data UpdateAssumeRolePolicy = UpdateAssumeRolePolicy' Text Text
- newUpdateAssumeRolePolicy :: Text -> Text -> UpdateAssumeRolePolicy
- data UpdateAssumeRolePolicyResponse = UpdateAssumeRolePolicyResponse' {
- newUpdateAssumeRolePolicyResponse :: UpdateAssumeRolePolicyResponse
- data GetServiceLastAccessedDetailsWithEntities = GetServiceLastAccessedDetailsWithEntities' (Maybe Text) (Maybe Natural) Text Text
- newGetServiceLastAccessedDetailsWithEntities :: Text -> Text -> GetServiceLastAccessedDetailsWithEntities
- data GetServiceLastAccessedDetailsWithEntitiesResponse = GetServiceLastAccessedDetailsWithEntitiesResponse' (Maybe ErrorDetails) (Maybe Text) (Maybe Bool) Int JobStatusType ISO8601 ISO8601 [EntityDetails]
- newGetServiceLastAccessedDetailsWithEntitiesResponse :: Int -> JobStatusType -> UTCTime -> UTCTime -> GetServiceLastAccessedDetailsWithEntitiesResponse
- data UntagServerCertificate = UntagServerCertificate' Text [Text]
- newUntagServerCertificate :: Text -> UntagServerCertificate
- data UntagServerCertificateResponse = UntagServerCertificateResponse' {
- newUntagServerCertificateResponse :: UntagServerCertificateResponse
- data GetInstanceProfile = GetInstanceProfile' Text
- newGetInstanceProfile :: Text -> GetInstanceProfile
- data GetInstanceProfileResponse = GetInstanceProfileResponse' Int InstanceProfile
- newGetInstanceProfileResponse :: Int -> InstanceProfile -> GetInstanceProfileResponse
- data CreateLoginProfile = CreateLoginProfile' (Maybe Bool) Text (Sensitive Text)
- newCreateLoginProfile :: Text -> Text -> CreateLoginProfile
- data CreateLoginProfileResponse = CreateLoginProfileResponse' Int LoginProfile
- newCreateLoginProfileResponse :: Int -> LoginProfile -> CreateLoginProfileResponse
- data GetSAMLProvider = GetSAMLProvider' Text
- newGetSAMLProvider :: Text -> GetSAMLProvider
- data GetSAMLProviderResponse = GetSAMLProviderResponse' (Maybe ISO8601) (Maybe ISO8601) (Maybe [Tag]) (Maybe Text) Int
- newGetSAMLProviderResponse :: Int -> GetSAMLProviderResponse
- data AddRoleToInstanceProfile = AddRoleToInstanceProfile' Text Text
- newAddRoleToInstanceProfile :: Text -> Text -> AddRoleToInstanceProfile
- data AddRoleToInstanceProfileResponse = AddRoleToInstanceProfileResponse' {
- newAddRoleToInstanceProfileResponse :: AddRoleToInstanceProfileResponse
- data ListGroupsForUser = ListGroupsForUser' (Maybe Text) (Maybe Natural) Text
- newListGroupsForUser :: Text -> ListGroupsForUser
- data ListGroupsForUserResponse = ListGroupsForUserResponse' (Maybe Text) (Maybe Bool) Int [Group]
- newListGroupsForUserResponse :: Int -> ListGroupsForUserResponse
- data ListEntitiesForPolicy = ListEntitiesForPolicy' (Maybe Text) (Maybe EntityType) (Maybe Text) (Maybe Natural) (Maybe PolicyUsageType) Text
- newListEntitiesForPolicy :: Text -> ListEntitiesForPolicy
- data ListEntitiesForPolicyResponse = ListEntitiesForPolicyResponse' (Maybe [PolicyGroup]) (Maybe [PolicyRole]) (Maybe Text) (Maybe [PolicyUser]) (Maybe Bool) Int
- newListEntitiesForPolicyResponse :: Int -> ListEntitiesForPolicyResponse
- data AddUserToGroup = AddUserToGroup' Text Text
- newAddUserToGroup :: Text -> Text -> AddUserToGroup
- data AddUserToGroupResponse = AddUserToGroupResponse' {
- newAddUserToGroupResponse :: AddUserToGroupResponse
- data TagOpenIDConnectProvider = TagOpenIDConnectProvider' Text [Tag]
- newTagOpenIDConnectProvider :: Text -> TagOpenIDConnectProvider
- data TagOpenIDConnectProviderResponse = TagOpenIDConnectProviderResponse' {
- newTagOpenIDConnectProviderResponse :: TagOpenIDConnectProviderResponse
- data SimulatePrincipalPolicy = SimulatePrincipalPolicy' (Maybe [Text]) (Maybe Text) (Maybe Text) (Maybe Text) (Maybe [Text]) (Maybe [Text]) (Maybe Text) (Maybe Natural) (Maybe [ContextEntry]) (Maybe Text) Text [Text]
- newSimulatePrincipalPolicy :: Text -> SimulatePrincipalPolicy
- data SimulatePolicyResponse = SimulatePolicyResponse' (Maybe [EvaluationResult]) (Maybe Text) (Maybe Bool)
- newSimulatePolicyResponse :: SimulatePolicyResponse
- data GetOrganizationsAccessReport = GetOrganizationsAccessReport' (Maybe SortKeyType) (Maybe Text) (Maybe Natural) Text
- newGetOrganizationsAccessReport :: Text -> GetOrganizationsAccessReport
- data GetOrganizationsAccessReportResponse = GetOrganizationsAccessReportResponse' (Maybe Int) (Maybe ISO8601) (Maybe [AccessDetail]) (Maybe Int) (Maybe Text) (Maybe ErrorDetails) (Maybe Bool) Int JobStatusType ISO8601
- newGetOrganizationsAccessReportResponse :: Int -> JobStatusType -> UTCTime -> GetOrganizationsAccessReportResponse
- data GetPolicyVersion = GetPolicyVersion' Text Text
- newGetPolicyVersion :: Text -> Text -> GetPolicyVersion
- data GetPolicyVersionResponse = GetPolicyVersionResponse' (Maybe PolicyVersion) Int
- newGetPolicyVersionResponse :: Int -> GetPolicyVersionResponse
- data CreateServiceLinkedRole = CreateServiceLinkedRole' (Maybe Text) (Maybe Text) Text
- newCreateServiceLinkedRole :: Text -> CreateServiceLinkedRole
- data CreateServiceLinkedRoleResponse = CreateServiceLinkedRoleResponse' (Maybe Role) Int
- newCreateServiceLinkedRoleResponse :: Int -> CreateServiceLinkedRoleResponse
- data ListServiceSpecificCredentials = ListServiceSpecificCredentials' (Maybe Text) (Maybe Text)
- newListServiceSpecificCredentials :: ListServiceSpecificCredentials
- data ListServiceSpecificCredentialsResponse = ListServiceSpecificCredentialsResponse' (Maybe [ServiceSpecificCredentialMetadata]) Int
- newListServiceSpecificCredentialsResponse :: Int -> ListServiceSpecificCredentialsResponse
- data DeleteOpenIDConnectProvider = DeleteOpenIDConnectProvider' Text
- newDeleteOpenIDConnectProvider :: Text -> DeleteOpenIDConnectProvider
- data DeleteOpenIDConnectProviderResponse = DeleteOpenIDConnectProviderResponse' {
- newDeleteOpenIDConnectProviderResponse :: DeleteOpenIDConnectProviderResponse
- data GetUser = GetUser' (Maybe Text)
- newGetUser :: GetUser
- data GetUserResponse = GetUserResponse' Int User
- newGetUserResponse :: Int -> User -> GetUserResponse
- data ListSigningCertificates = ListSigningCertificates' (Maybe Text) (Maybe Text) (Maybe Natural)
- newListSigningCertificates :: ListSigningCertificates
- data ListSigningCertificatesResponse = ListSigningCertificatesResponse' (Maybe Text) (Maybe Bool) Int [SigningCertificate]
- newListSigningCertificatesResponse :: Int -> ListSigningCertificatesResponse
- data DeleteSigningCertificate = DeleteSigningCertificate' (Maybe Text) Text
- newDeleteSigningCertificate :: Text -> DeleteSigningCertificate
- data DeleteSigningCertificateResponse = DeleteSigningCertificateResponse' {
- newDeleteSigningCertificateResponse :: DeleteSigningCertificateResponse
- data UpdateSigningCertificate = UpdateSigningCertificate' (Maybe Text) Text StatusType
- newUpdateSigningCertificate :: Text -> StatusType -> UpdateSigningCertificate
- data UpdateSigningCertificateResponse = UpdateSigningCertificateResponse' {
- newUpdateSigningCertificateResponse :: UpdateSigningCertificateResponse
- data ListAttachedUserPolicies = ListAttachedUserPolicies' (Maybe Text) (Maybe Text) (Maybe Natural) Text
- newListAttachedUserPolicies :: Text -> ListAttachedUserPolicies
- data ListAttachedUserPoliciesResponse = ListAttachedUserPoliciesResponse' (Maybe [AttachedPolicy]) (Maybe Text) (Maybe Bool) Int
- newListAttachedUserPoliciesResponse :: Int -> ListAttachedUserPoliciesResponse
- data RemoveClientIDFromOpenIDConnectProvider = RemoveClientIDFromOpenIDConnectProvider' Text Text
- newRemoveClientIDFromOpenIDConnectProvider :: Text -> Text -> RemoveClientIDFromOpenIDConnectProvider
- data RemoveClientIDFromOpenIDConnectProviderResponse = RemoveClientIDFromOpenIDConnectProviderResponse' {
- newRemoveClientIDFromOpenIDConnectProviderResponse :: RemoveClientIDFromOpenIDConnectProviderResponse
- data AttachUserPolicy = AttachUserPolicy' Text Text
- newAttachUserPolicy :: Text -> Text -> AttachUserPolicy
- data AttachUserPolicyResponse = AttachUserPolicyResponse' {
- newAttachUserPolicyResponse :: AttachUserPolicyResponse
- data TagPolicy = TagPolicy' Text [Tag]
- newTagPolicy :: Text -> TagPolicy
- data TagPolicyResponse = TagPolicyResponse' {
- newTagPolicyResponse :: TagPolicyResponse
- data CreateServiceSpecificCredential = CreateServiceSpecificCredential' Text Text
- newCreateServiceSpecificCredential :: Text -> Text -> CreateServiceSpecificCredential
- data CreateServiceSpecificCredentialResponse = CreateServiceSpecificCredentialResponse' (Maybe ServiceSpecificCredential) Int
- newCreateServiceSpecificCredentialResponse :: Int -> CreateServiceSpecificCredentialResponse
- data ListVirtualMFADevices = ListVirtualMFADevices' (Maybe AssignmentStatusType) (Maybe Text) (Maybe Natural)
- newListVirtualMFADevices :: ListVirtualMFADevices
- data ListVirtualMFADevicesResponse = ListVirtualMFADevicesResponse' (Maybe Text) (Maybe Bool) Int [VirtualMFADevice]
- newListVirtualMFADevicesResponse :: Int -> ListVirtualMFADevicesResponse
- data ResyncMFADevice = ResyncMFADevice' Text Text Text Text
- newResyncMFADevice :: Text -> Text -> Text -> Text -> ResyncMFADevice
- data ResyncMFADeviceResponse = ResyncMFADeviceResponse' {
- newResyncMFADeviceResponse :: ResyncMFADeviceResponse
- data TagServerCertificate = TagServerCertificate' Text [Tag]
- newTagServerCertificate :: Text -> TagServerCertificate
- data TagServerCertificateResponse = TagServerCertificateResponse' {
- newTagServerCertificateResponse :: TagServerCertificateResponse
- data DeleteAccessKey = DeleteAccessKey' (Maybe Text) AccessKey
- newDeleteAccessKey :: AccessKey -> DeleteAccessKey
- data DeleteAccessKeyResponse = DeleteAccessKeyResponse' {
- newDeleteAccessKeyResponse :: DeleteAccessKeyResponse
- data UpdateAccessKey = UpdateAccessKey' (Maybe Text) AccessKey StatusType
- newUpdateAccessKey :: AccessKey -> StatusType -> UpdateAccessKey
- data UpdateAccessKeyResponse = UpdateAccessKeyResponse' {
- newUpdateAccessKeyResponse :: UpdateAccessKeyResponse
- data ListUserTags = ListUserTags' (Maybe Text) (Maybe Natural) Text
- newListUserTags :: Text -> ListUserTags
- data ListUserTagsResponse = ListUserTagsResponse' (Maybe Text) (Maybe Bool) Int [Tag]
- newListUserTagsResponse :: Int -> ListUserTagsResponse
- data ListAccessKeys = ListAccessKeys' (Maybe Text) (Maybe Text) (Maybe Natural)
- newListAccessKeys :: ListAccessKeys
- data ListAccessKeysResponse = ListAccessKeysResponse' (Maybe Text) (Maybe Bool) Int [AccessKeyMetadata]
- newListAccessKeysResponse :: Int -> ListAccessKeysResponse
- data GetRolePolicy = GetRolePolicy' Text Text
- newGetRolePolicy :: Text -> Text -> GetRolePolicy
- data GetRolePolicyResponse = GetRolePolicyResponse' Int Text Text Text
- newGetRolePolicyResponse :: Int -> Text -> Text -> Text -> GetRolePolicyResponse
- data SetSecurityTokenServicePreferences = SetSecurityTokenServicePreferences' GlobalEndpointTokenVersion
- newSetSecurityTokenServicePreferences :: GlobalEndpointTokenVersion -> SetSecurityTokenServicePreferences
- data SetSecurityTokenServicePreferencesResponse = SetSecurityTokenServicePreferencesResponse' {
- newSetSecurityTokenServicePreferencesResponse :: SetSecurityTokenServicePreferencesResponse
- data UntagRole = UntagRole' Text [Text]
- newUntagRole :: Text -> UntagRole
- data UntagRoleResponse = UntagRoleResponse' {
- newUntagRoleResponse :: UntagRoleResponse
- data CreateUser = CreateUser' (Maybe Text) (Maybe Text) (Maybe [Tag]) Text
- newCreateUser :: Text -> CreateUser
- data CreateUserResponse = CreateUserResponse' (Maybe User) Int
- newCreateUserResponse :: Int -> CreateUserResponse
- data PutRolePolicy = PutRolePolicy' Text Text Text
- newPutRolePolicy :: Text -> Text -> Text -> PutRolePolicy
- data PutRolePolicyResponse = PutRolePolicyResponse' {
- newPutRolePolicyResponse :: PutRolePolicyResponse
- data GetContextKeysForCustomPolicy = GetContextKeysForCustomPolicy' [Text]
- newGetContextKeysForCustomPolicy :: GetContextKeysForCustomPolicy
- data GetContextKeysForPolicyResponse = GetContextKeysForPolicyResponse' (Maybe [Text])
- newGetContextKeysForPolicyResponse :: GetContextKeysForPolicyResponse
- data UploadSigningCertificate = UploadSigningCertificate' (Maybe Text) Text
- newUploadSigningCertificate :: Text -> UploadSigningCertificate
- data UploadSigningCertificateResponse = UploadSigningCertificateResponse' Int SigningCertificate
- newUploadSigningCertificateResponse :: Int -> SigningCertificate -> UploadSigningCertificateResponse
- data DeleteRolePolicy = DeleteRolePolicy' Text Text
- newDeleteRolePolicy :: Text -> Text -> DeleteRolePolicy
- data DeleteRolePolicyResponse = DeleteRolePolicyResponse' {
- newDeleteRolePolicyResponse :: DeleteRolePolicyResponse
- data GetAccountPasswordPolicy = GetAccountPasswordPolicy' {
- newGetAccountPasswordPolicy :: GetAccountPasswordPolicy
- data GetAccountPasswordPolicyResponse = GetAccountPasswordPolicyResponse' Int PasswordPolicy
- newGetAccountPasswordPolicyResponse :: Int -> PasswordPolicy -> GetAccountPasswordPolicyResponse
- data GetAccessKeyLastUsed = GetAccessKeyLastUsed' AccessKey
- newGetAccessKeyLastUsed :: AccessKey -> GetAccessKeyLastUsed
- data GetAccessKeyLastUsedResponse = GetAccessKeyLastUsedResponse' (Maybe Text) (Maybe AccessKeyLastUsed) Int
- newGetAccessKeyLastUsedResponse :: Int -> GetAccessKeyLastUsedResponse
- data UpdateUser = UpdateUser' (Maybe Text) (Maybe Text) Text
- newUpdateUser :: Text -> UpdateUser
- data UpdateUserResponse = UpdateUserResponse' {
- newUpdateUserResponse :: UpdateUserResponse
- data DeleteUser = DeleteUser' Text
- newDeleteUser :: Text -> DeleteUser
- data DeleteUserResponse = DeleteUserResponse' {
- newDeleteUserResponse :: DeleteUserResponse
- data AddClientIDToOpenIDConnectProvider = AddClientIDToOpenIDConnectProvider' Text Text
- newAddClientIDToOpenIDConnectProvider :: Text -> Text -> AddClientIDToOpenIDConnectProvider
- data AddClientIDToOpenIDConnectProviderResponse = AddClientIDToOpenIDConnectProviderResponse' {
- newAddClientIDToOpenIDConnectProviderResponse :: AddClientIDToOpenIDConnectProviderResponse
- data ListRolePolicies = ListRolePolicies' (Maybe Text) (Maybe Natural) Text
- newListRolePolicies :: Text -> ListRolePolicies
- data ListRolePoliciesResponse = ListRolePoliciesResponse' (Maybe Text) (Maybe Bool) Int [Text]
- newListRolePoliciesResponse :: Int -> ListRolePoliciesResponse
- data CreateAccountAlias = CreateAccountAlias' Text
- newCreateAccountAlias :: Text -> CreateAccountAlias
- data CreateAccountAliasResponse = CreateAccountAliasResponse' {
- newCreateAccountAliasResponse :: CreateAccountAliasResponse
- data ListPoliciesGrantingServiceAccess = ListPoliciesGrantingServiceAccess' (Maybe Text) Text (NonEmpty Text)
- newListPoliciesGrantingServiceAccess :: Text -> NonEmpty Text -> ListPoliciesGrantingServiceAccess
- data ListPoliciesGrantingServiceAccessResponse = ListPoliciesGrantingServiceAccessResponse' (Maybe Text) (Maybe Bool) Int [ListPoliciesGrantingServiceAccessEntry]
- newListPoliciesGrantingServiceAccessResponse :: Int -> ListPoliciesGrantingServiceAccessResponse
- data ListInstanceProfiles = ListInstanceProfiles' (Maybe Text) (Maybe Text) (Maybe Natural)
- newListInstanceProfiles :: ListInstanceProfiles
- data ListInstanceProfilesResponse = ListInstanceProfilesResponse' (Maybe Text) (Maybe Bool) Int [InstanceProfile]
- newListInstanceProfilesResponse :: Int -> ListInstanceProfilesResponse
- data EnableMFADevice = EnableMFADevice' Text Text Text Text
- newEnableMFADevice :: Text -> Text -> Text -> Text -> EnableMFADevice
- data EnableMFADeviceResponse = EnableMFADeviceResponse' {
- newEnableMFADeviceResponse :: EnableMFADeviceResponse
- data ListAccountAliases = ListAccountAliases' (Maybe Text) (Maybe Natural)
- newListAccountAliases :: ListAccountAliases
- data ListAccountAliasesResponse = ListAccountAliasesResponse' (Maybe Text) (Maybe Bool) Int [Text]
- newListAccountAliasesResponse :: Int -> ListAccountAliasesResponse
- data DeleteSAMLProvider = DeleteSAMLProvider' Text
- newDeleteSAMLProvider :: Text -> DeleteSAMLProvider
- data DeleteSAMLProviderResponse = DeleteSAMLProviderResponse' {
- newDeleteSAMLProviderResponse :: DeleteSAMLProviderResponse
- data UpdateSAMLProvider = UpdateSAMLProvider' Text Text
- newUpdateSAMLProvider :: Text -> Text -> UpdateSAMLProvider
- data UpdateSAMLProviderResponse = UpdateSAMLProviderResponse' (Maybe Text) Int
- newUpdateSAMLProviderResponse :: Int -> UpdateSAMLProviderResponse
- data UntagMFADevice = UntagMFADevice' Text [Text]
- newUntagMFADevice :: Text -> UntagMFADevice
- data UntagMFADeviceResponse = UntagMFADeviceResponse' {
- newUntagMFADeviceResponse :: UntagMFADeviceResponse
- data CreateGroup = CreateGroup' (Maybe Text) Text
- newCreateGroup :: Text -> CreateGroup
- data CreateGroupResponse = CreateGroupResponse' Int Group
- newCreateGroupResponse :: Int -> Group -> CreateGroupResponse
- data ListMFADevices = ListMFADevices' (Maybe Text) (Maybe Text) (Maybe Natural)
- newListMFADevices :: ListMFADevices
- data ListMFADevicesResponse = ListMFADevicesResponse' (Maybe Text) (Maybe Bool) Int [MFADevice]
- newListMFADevicesResponse :: Int -> ListMFADevicesResponse
- data UntagInstanceProfile = UntagInstanceProfile' Text [Text]
- newUntagInstanceProfile :: Text -> UntagInstanceProfile
- data UntagInstanceProfileResponse = UntagInstanceProfileResponse' {
- newUntagInstanceProfileResponse :: UntagInstanceProfileResponse
- data UploadServerCertificate = UploadServerCertificate' (Maybe Text) (Maybe Text) (Maybe [Tag]) Text Text (Sensitive Text)
- newUploadServerCertificate :: Text -> Text -> Text -> UploadServerCertificate
- data UploadServerCertificateResponse = UploadServerCertificateResponse' (Maybe ServerCertificateMetadata) (Maybe [Tag]) Int
- newUploadServerCertificateResponse :: Int -> UploadServerCertificateResponse
- data SetDefaultPolicyVersion = SetDefaultPolicyVersion' Text Text
- newSetDefaultPolicyVersion :: Text -> Text -> SetDefaultPolicyVersion
- data SetDefaultPolicyVersionResponse = SetDefaultPolicyVersionResponse' {
- newSetDefaultPolicyVersionResponse :: SetDefaultPolicyVersionResponse
- data ListPolicyVersions = ListPolicyVersions' (Maybe Text) (Maybe Natural) Text
- newListPolicyVersions :: Text -> ListPolicyVersions
- data ListPolicyVersionsResponse = ListPolicyVersionsResponse' (Maybe [PolicyVersion]) (Maybe Text) (Maybe Bool) Int
- newListPolicyVersionsResponse :: Int -> ListPolicyVersionsResponse
- data UpdateRoleDescription = UpdateRoleDescription' Text Text
- newUpdateRoleDescription :: Text -> Text -> UpdateRoleDescription
- data UpdateRoleDescriptionResponse = UpdateRoleDescriptionResponse' (Maybe Role) Int
- newUpdateRoleDescriptionResponse :: Int -> UpdateRoleDescriptionResponse
- data ListSAMLProviders = ListSAMLProviders' {
- newListSAMLProviders :: ListSAMLProviders
- data ListSAMLProvidersResponse = ListSAMLProvidersResponse' (Maybe [SAMLProviderListEntry]) Int
- newListSAMLProvidersResponse :: Int -> ListSAMLProvidersResponse
- data GetServiceLastAccessedDetails = GetServiceLastAccessedDetails' (Maybe Text) (Maybe Natural) Text
- newGetServiceLastAccessedDetails :: Text -> GetServiceLastAccessedDetails
- data GetServiceLastAccessedDetailsResponse = GetServiceLastAccessedDetailsResponse' (Maybe AccessAdvisorUsageGranularityType) (Maybe ErrorDetails) (Maybe Text) (Maybe Bool) Int JobStatusType ISO8601 [ServiceLastAccessed] ISO8601
- newGetServiceLastAccessedDetailsResponse :: Int -> JobStatusType -> UTCTime -> UTCTime -> GetServiceLastAccessedDetailsResponse
- data GetServerCertificate = GetServerCertificate' Text
- newGetServerCertificate :: Text -> GetServerCertificate
- data GetServerCertificateResponse = GetServerCertificateResponse' Int ServerCertificate
- newGetServerCertificateResponse :: Int -> ServerCertificate -> GetServerCertificateResponse
- data DeleteGroup = DeleteGroup' Text
- newDeleteGroup :: Text -> DeleteGroup
- data DeleteGroupResponse = DeleteGroupResponse' {
- newDeleteGroupResponse :: DeleteGroupResponse
- data UpdateGroup = UpdateGroup' (Maybe Text) (Maybe Text) Text
- newUpdateGroup :: Text -> UpdateGroup
- data UpdateGroupResponse = UpdateGroupResponse' {
- newUpdateGroupResponse :: UpdateGroupResponse
- data ListGroups = ListGroups' (Maybe Text) (Maybe Text) (Maybe Natural)
- newListGroups :: ListGroups
- data ListGroupsResponse = ListGroupsResponse' (Maybe Text) (Maybe Bool) Int [Group]
- newListGroupsResponse :: Int -> ListGroupsResponse
- data GenerateCredentialReport = GenerateCredentialReport' {
- newGenerateCredentialReport :: GenerateCredentialReport
- data GenerateCredentialReportResponse = GenerateCredentialReportResponse' (Maybe ReportStateType) (Maybe Text) Int
- newGenerateCredentialReportResponse :: Int -> GenerateCredentialReportResponse
- data GetPolicy = GetPolicy' Text
- newGetPolicy :: Text -> GetPolicy
- data GetPolicyResponse = GetPolicyResponse' (Maybe Policy) Int
- newGetPolicyResponse :: Int -> GetPolicyResponse
- data ListInstanceProfileTags = ListInstanceProfileTags' (Maybe Text) (Maybe Natural) Text
- newListInstanceProfileTags :: Text -> ListInstanceProfileTags
- data ListInstanceProfileTagsResponse = ListInstanceProfileTagsResponse' (Maybe Text) (Maybe Bool) Int [Tag]
- newListInstanceProfileTagsResponse :: Int -> ListInstanceProfileTagsResponse
- data UpdateLoginProfile = UpdateLoginProfile' (Maybe (Sensitive Text)) (Maybe Bool) Text
- newUpdateLoginProfile :: Text -> UpdateLoginProfile
- data UpdateLoginProfileResponse = UpdateLoginProfileResponse' {
- newUpdateLoginProfileResponse :: UpdateLoginProfileResponse
- data DeleteLoginProfile = DeleteLoginProfile' Text
- newDeleteLoginProfile :: Text -> DeleteLoginProfile
- data DeleteLoginProfileResponse = DeleteLoginProfileResponse' {
- newDeleteLoginProfileResponse :: DeleteLoginProfileResponse
- data ListSAMLProviderTags = ListSAMLProviderTags' (Maybe Text) (Maybe Natural) Text
- newListSAMLProviderTags :: Text -> ListSAMLProviderTags
- data ListSAMLProviderTagsResponse = ListSAMLProviderTagsResponse' (Maybe Text) (Maybe Bool) Int [Tag]
- newListSAMLProviderTagsResponse :: Int -> ListSAMLProviderTagsResponse
- data GetGroup = GetGroup' (Maybe Text) (Maybe Natural) Text
- newGetGroup :: Text -> GetGroup
- data GetGroupResponse = GetGroupResponse' (Maybe Text) (Maybe Bool) Int Group [User]
- newGetGroupResponse :: Int -> Group -> GetGroupResponse
- data UntagPolicy = UntagPolicy' Text [Text]
- newUntagPolicy :: Text -> UntagPolicy
- data UntagPolicyResponse = UntagPolicyResponse' {
- newUntagPolicyResponse :: UntagPolicyResponse
- data DeleteServerCertificate = DeleteServerCertificate' Text
- newDeleteServerCertificate :: Text -> DeleteServerCertificate
- data DeleteServerCertificateResponse = DeleteServerCertificateResponse' {
- newDeleteServerCertificateResponse :: DeleteServerCertificateResponse
- data UpdateServerCertificate = UpdateServerCertificate' (Maybe Text) (Maybe Text) Text
- newUpdateServerCertificate :: Text -> UpdateServerCertificate
- data UpdateServerCertificateResponse = UpdateServerCertificateResponse' {
- newUpdateServerCertificateResponse :: UpdateServerCertificateResponse
- data ListAttachedGroupPolicies = ListAttachedGroupPolicies' (Maybe Text) (Maybe Text) (Maybe Natural) Text
- newListAttachedGroupPolicies :: Text -> ListAttachedGroupPolicies
- data ListAttachedGroupPoliciesResponse = ListAttachedGroupPoliciesResponse' (Maybe [AttachedPolicy]) (Maybe Text) (Maybe Bool) Int
- newListAttachedGroupPoliciesResponse :: Int -> ListAttachedGroupPoliciesResponse
- data ListMFADeviceTags = ListMFADeviceTags' (Maybe Text) (Maybe Natural) Text
- newListMFADeviceTags :: Text -> ListMFADeviceTags
- data ListMFADeviceTagsResponse = ListMFADeviceTagsResponse' (Maybe Text) (Maybe Bool) Int [Tag]
- newListMFADeviceTagsResponse :: Int -> ListMFADeviceTagsResponse
- newtype AccessAdvisorUsageGranularityType where
- newtype AssignmentStatusType where
- newtype ContextKeyTypeEnum where
- ContextKeyTypeEnum' { }
- pattern ContextKeyTypeEnum_Binary :: ContextKeyTypeEnum
- pattern ContextKeyTypeEnum_BinaryList :: ContextKeyTypeEnum
- pattern ContextKeyTypeEnum_Boolean :: ContextKeyTypeEnum
- pattern ContextKeyTypeEnum_BooleanList :: ContextKeyTypeEnum
- pattern ContextKeyTypeEnum_Date :: ContextKeyTypeEnum
- pattern ContextKeyTypeEnum_DateList :: ContextKeyTypeEnum
- pattern ContextKeyTypeEnum_Ip :: ContextKeyTypeEnum
- pattern ContextKeyTypeEnum_IpList :: ContextKeyTypeEnum
- pattern ContextKeyTypeEnum_Numeric :: ContextKeyTypeEnum
- pattern ContextKeyTypeEnum_NumericList :: ContextKeyTypeEnum
- pattern ContextKeyTypeEnum_String :: ContextKeyTypeEnum
- pattern ContextKeyTypeEnum_StringList :: ContextKeyTypeEnum
- newtype DeletionTaskStatusType where
- newtype EncodingType where
- EncodingType' { }
- pattern EncodingType_PEM :: EncodingType
- pattern EncodingType_SSH :: EncodingType
- newtype EntityType where
- EntityType' { }
- pattern EntityType_AWSManagedPolicy :: EntityType
- pattern EntityType_Group :: EntityType
- pattern EntityType_LocalManagedPolicy :: EntityType
- pattern EntityType_Role :: EntityType
- pattern EntityType_User :: EntityType
- newtype GlobalEndpointTokenVersion where
- newtype JobStatusType where
- JobStatusType' { }
- pattern JobStatusType_COMPLETED :: JobStatusType
- pattern JobStatusType_FAILED :: JobStatusType
- pattern JobStatusType_IN_PROGRESS :: JobStatusType
- newtype PermissionsBoundaryAttachmentType where
- newtype PolicyEvaluationDecisionType where
- newtype PolicyOwnerEntityType where
- newtype PolicyScopeType where
- PolicyScopeType' { }
- pattern PolicyScopeType_AWS :: PolicyScopeType
- pattern PolicyScopeType_All :: PolicyScopeType
- pattern PolicyScopeType_Local :: PolicyScopeType
- newtype PolicySourceType where
- PolicySourceType' { }
- pattern PolicySourceType_Aws_managed :: PolicySourceType
- pattern PolicySourceType_Group :: PolicySourceType
- pattern PolicySourceType_None :: PolicySourceType
- pattern PolicySourceType_Resource :: PolicySourceType
- pattern PolicySourceType_Role :: PolicySourceType
- pattern PolicySourceType_User :: PolicySourceType
- pattern PolicySourceType_User_managed :: PolicySourceType
- newtype PolicyType where
- PolicyType' { }
- pattern PolicyType_INLINE :: PolicyType
- pattern PolicyType_MANAGED :: PolicyType
- newtype PolicyUsageType where
- newtype ReportFormatType where
- ReportFormatType' { }
- pattern ReportFormatType_Text_csv :: ReportFormatType
- newtype ReportStateType where
- ReportStateType' { }
- pattern ReportStateType_COMPLETE :: ReportStateType
- pattern ReportStateType_INPROGRESS :: ReportStateType
- pattern ReportStateType_STARTED :: ReportStateType
- newtype SortKeyType where
- newtype StatusType where
- StatusType' { }
- pattern StatusType_Active :: StatusType
- pattern StatusType_Inactive :: StatusType
- newtype SummaryKeyType where
- SummaryKeyType' { }
- pattern SummaryKeyType_AccessKeysPerUserQuota :: SummaryKeyType
- pattern SummaryKeyType_AccountAccessKeysPresent :: SummaryKeyType
- pattern SummaryKeyType_AccountMFAEnabled :: SummaryKeyType
- pattern SummaryKeyType_AccountSigningCertificatesPresent :: SummaryKeyType
- pattern SummaryKeyType_AttachedPoliciesPerGroupQuota :: SummaryKeyType
- pattern SummaryKeyType_AttachedPoliciesPerRoleQuota :: SummaryKeyType
- pattern SummaryKeyType_AttachedPoliciesPerUserQuota :: SummaryKeyType
- pattern SummaryKeyType_GlobalEndpointTokenVersion :: SummaryKeyType
- pattern SummaryKeyType_GroupPolicySizeQuota :: SummaryKeyType
- pattern SummaryKeyType_Groups :: SummaryKeyType
- pattern SummaryKeyType_GroupsPerUserQuota :: SummaryKeyType
- pattern SummaryKeyType_GroupsQuota :: SummaryKeyType
- pattern SummaryKeyType_MFADevices :: SummaryKeyType
- pattern SummaryKeyType_MFADevicesInUse :: SummaryKeyType
- pattern SummaryKeyType_Policies :: SummaryKeyType
- pattern SummaryKeyType_PoliciesQuota :: SummaryKeyType
- pattern SummaryKeyType_PolicySizeQuota :: SummaryKeyType
- pattern SummaryKeyType_PolicyVersionsInUse :: SummaryKeyType
- pattern SummaryKeyType_PolicyVersionsInUseQuota :: SummaryKeyType
- pattern SummaryKeyType_ServerCertificates :: SummaryKeyType
- pattern SummaryKeyType_ServerCertificatesQuota :: SummaryKeyType
- pattern SummaryKeyType_SigningCertificatesPerUserQuota :: SummaryKeyType
- pattern SummaryKeyType_UserPolicySizeQuota :: SummaryKeyType
- pattern SummaryKeyType_Users :: SummaryKeyType
- pattern SummaryKeyType_UsersQuota :: SummaryKeyType
- pattern SummaryKeyType_VersionsPerPolicyQuota :: SummaryKeyType
- data AccessDetail = AccessDetail' (Maybe Text) (Maybe Text) (Maybe ISO8601) (Maybe Int) Text Text
- newAccessDetail :: Text -> Text -> AccessDetail
- data AccessKeyInfo = AccessKeyInfo' (Maybe ISO8601) Text AccessKey StatusType (Sensitive Text)
- newAccessKeyInfo :: Text -> AccessKey -> StatusType -> Text -> AccessKeyInfo
- data AccessKeyLastUsed = AccessKeyLastUsed' ISO8601 Text Text
- newAccessKeyLastUsed :: UTCTime -> Text -> Text -> AccessKeyLastUsed
- data AccessKeyMetadata = AccessKeyMetadata' (Maybe StatusType) (Maybe ISO8601) (Maybe Text) (Maybe AccessKey)
- newAccessKeyMetadata :: AccessKeyMetadata
- data AttachedPermissionsBoundary = AttachedPermissionsBoundary' (Maybe PermissionsBoundaryAttachmentType) (Maybe Text)
- newAttachedPermissionsBoundary :: AttachedPermissionsBoundary
- data AttachedPolicy = AttachedPolicy' (Maybe Text) (Maybe Text)
- newAttachedPolicy :: AttachedPolicy
- data ContextEntry = ContextEntry' (Maybe [Text]) (Maybe Text) (Maybe ContextKeyTypeEnum)
- newContextEntry :: ContextEntry
- data DeletionTaskFailureReasonType = DeletionTaskFailureReasonType' (Maybe [RoleUsageType]) (Maybe Text)
- newDeletionTaskFailureReasonType :: DeletionTaskFailureReasonType
- data EntityDetails = EntityDetails' (Maybe ISO8601) EntityInfo
- newEntityDetails :: EntityInfo -> EntityDetails
- data EntityInfo = EntityInfo' (Maybe Text) Text Text PolicyOwnerEntityType Text
- newEntityInfo :: Text -> Text -> PolicyOwnerEntityType -> Text -> EntityInfo
- data ErrorDetails = ErrorDetails' Text Text
- newErrorDetails :: Text -> Text -> ErrorDetails
- data EvaluationResult = EvaluationResult' (Maybe [Statement]) (Maybe (HashMap Text PolicyEvaluationDecisionType)) (Maybe [ResourceSpecificResult]) (Maybe Text) (Maybe [Text]) (Maybe PermissionsBoundaryDecisionDetail) (Maybe OrganizationsDecisionDetail) Text PolicyEvaluationDecisionType
- newEvaluationResult :: Text -> PolicyEvaluationDecisionType -> EvaluationResult
- data GetContextKeysForPolicyResponse = GetContextKeysForPolicyResponse' (Maybe [Text])
- newGetContextKeysForPolicyResponse :: GetContextKeysForPolicyResponse
- data Group = Group' Text Text Text Text ISO8601
- newGroup :: Text -> Text -> Text -> Text -> UTCTime -> Group
- data GroupDetail = GroupDetail' (Maybe Text) (Maybe Text) (Maybe ISO8601) (Maybe Text) (Maybe [PolicyDetail]) (Maybe Text) (Maybe [AttachedPolicy])
- newGroupDetail :: GroupDetail
- data InstanceProfile = InstanceProfile' (Maybe [Tag]) Text Text Text Text ISO8601 [Role]
- newInstanceProfile :: Text -> Text -> Text -> Text -> UTCTime -> InstanceProfile
- data ListPoliciesGrantingServiceAccessEntry = ListPoliciesGrantingServiceAccessEntry' (Maybe Text) (Maybe [PolicyGrantingServiceAccess])
- newListPoliciesGrantingServiceAccessEntry :: ListPoliciesGrantingServiceAccessEntry
- data LoginProfile = LoginProfile' (Maybe Bool) Text ISO8601
- newLoginProfile :: Text -> UTCTime -> LoginProfile
- data MFADevice = MFADevice' Text Text ISO8601
- newMFADevice :: Text -> Text -> UTCTime -> MFADevice
- data ManagedPolicyDetail = ManagedPolicyDetail' (Maybe Text) (Maybe Text) (Maybe ISO8601) (Maybe Text) (Maybe Text) (Maybe [PolicyVersion]) (Maybe ISO8601) (Maybe Bool) (Maybe Int) (Maybe Text) (Maybe Int) (Maybe Text)
- newManagedPolicyDetail :: ManagedPolicyDetail
- data OpenIDConnectProviderListEntry = OpenIDConnectProviderListEntry' (Maybe Text)
- newOpenIDConnectProviderListEntry :: OpenIDConnectProviderListEntry
- data OrganizationsDecisionDetail = OrganizationsDecisionDetail' (Maybe Bool)
- newOrganizationsDecisionDetail :: OrganizationsDecisionDetail
- data PasswordPolicy = PasswordPolicy' (Maybe Bool) (Maybe Natural) (Maybe Bool) (Maybe Natural) (Maybe Bool) (Maybe Natural) (Maybe Bool) (Maybe Bool) (Maybe Bool) (Maybe Bool)
- newPasswordPolicy :: PasswordPolicy
- data PermissionsBoundaryDecisionDetail = PermissionsBoundaryDecisionDetail' (Maybe Bool)
- newPermissionsBoundaryDecisionDetail :: PermissionsBoundaryDecisionDetail
- data Policy = Policy' (Maybe Text) (Maybe Text) (Maybe ISO8601) (Maybe Text) (Maybe Text) (Maybe ISO8601) (Maybe Bool) (Maybe Int) (Maybe Text) (Maybe Int) (Maybe Text) (Maybe [Tag])
- newPolicy :: Policy
- data PolicyDetail = PolicyDetail' (Maybe Text) (Maybe Text)
- newPolicyDetail :: PolicyDetail
- data PolicyGrantingServiceAccess = PolicyGrantingServiceAccess' (Maybe Text) (Maybe PolicyOwnerEntityType) (Maybe Text) Text PolicyType
- newPolicyGrantingServiceAccess :: Text -> PolicyType -> PolicyGrantingServiceAccess
- data PolicyGroup = PolicyGroup' (Maybe Text) (Maybe Text)
- newPolicyGroup :: PolicyGroup
- data PolicyRole = PolicyRole' (Maybe Text) (Maybe Text)
- newPolicyRole :: PolicyRole
- data PolicyUser = PolicyUser' (Maybe Text) (Maybe Text)
- newPolicyUser :: PolicyUser
- data PolicyVersion = PolicyVersion' (Maybe Text) (Maybe ISO8601) (Maybe Text) (Maybe Bool)
- newPolicyVersion :: PolicyVersion
- data Position = Position' (Maybe Int) (Maybe Int)
- newPosition :: Position
- data ResourceSpecificResult = ResourceSpecificResult' (Maybe [Statement]) (Maybe (HashMap Text PolicyEvaluationDecisionType)) (Maybe [Text]) (Maybe PermissionsBoundaryDecisionDetail) Text PolicyEvaluationDecisionType
- newResourceSpecificResult :: Text -> PolicyEvaluationDecisionType -> ResourceSpecificResult
- data Role = Role' (Maybe Natural) (Maybe Text) (Maybe RoleLastUsed) (Maybe AttachedPermissionsBoundary) (Maybe Text) (Maybe [Tag]) Text Text Text Text ISO8601
- newRole :: Text -> Text -> Text -> Text -> UTCTime -> Role
- data RoleDetail = RoleDetail' (Maybe Text) (Maybe Text) (Maybe Text) (Maybe [InstanceProfile]) (Maybe ISO8601) (Maybe Text) (Maybe Text) (Maybe RoleLastUsed) (Maybe AttachedPermissionsBoundary) (Maybe [PolicyDetail]) (Maybe [Tag]) (Maybe [AttachedPolicy])
- newRoleDetail :: RoleDetail
- data RoleLastUsed = RoleLastUsed' (Maybe ISO8601) (Maybe Text)
- newRoleLastUsed :: RoleLastUsed
- data RoleUsageType = RoleUsageType' (Maybe [Text]) (Maybe Text)
- newRoleUsageType :: RoleUsageType
- data SAMLProviderListEntry = SAMLProviderListEntry' (Maybe Text) (Maybe ISO8601) (Maybe ISO8601)
- newSAMLProviderListEntry :: SAMLProviderListEntry
- data SSHPublicKey = SSHPublicKey' (Maybe ISO8601) Text Text Text Text StatusType
- newSSHPublicKey :: Text -> Text -> Text -> Text -> StatusType -> SSHPublicKey
- data SSHPublicKeyMetadata = SSHPublicKeyMetadata' Text Text StatusType ISO8601
- newSSHPublicKeyMetadata :: Text -> Text -> StatusType -> UTCTime -> SSHPublicKeyMetadata
- data ServerCertificate = ServerCertificate' (Maybe Text) (Maybe [Tag]) ServerCertificateMetadata Text
- newServerCertificate :: ServerCertificateMetadata -> Text -> ServerCertificate
- data ServerCertificateMetadata = ServerCertificateMetadata' (Maybe ISO8601) (Maybe ISO8601) Text Text Text Text
- newServerCertificateMetadata :: Text -> Text -> Text -> Text -> ServerCertificateMetadata
- data ServiceLastAccessed = ServiceLastAccessed' (Maybe ISO8601) (Maybe [TrackedActionLastAccessed]) (Maybe Text) (Maybe Text) (Maybe Int) Text Text
- newServiceLastAccessed :: Text -> Text -> ServiceLastAccessed
- data ServiceSpecificCredential = ServiceSpecificCredential' ISO8601 Text Text (Sensitive Text) Text Text StatusType
- newServiceSpecificCredential :: UTCTime -> Text -> Text -> Text -> Text -> Text -> StatusType -> ServiceSpecificCredential
- data ServiceSpecificCredentialMetadata = ServiceSpecificCredentialMetadata' Text StatusType Text ISO8601 Text Text
- newServiceSpecificCredentialMetadata :: Text -> StatusType -> Text -> UTCTime -> Text -> Text -> ServiceSpecificCredentialMetadata
- data SigningCertificate = SigningCertificate' (Maybe ISO8601) Text Text Text StatusType
- newSigningCertificate :: Text -> Text -> Text -> StatusType -> SigningCertificate
- data SimulatePolicyResponse = SimulatePolicyResponse' (Maybe [EvaluationResult]) (Maybe Text) (Maybe Bool)
- newSimulatePolicyResponse :: SimulatePolicyResponse
- data Statement = Statement' (Maybe PolicySourceType) (Maybe Text) (Maybe Position) (Maybe Position)
- newStatement :: Statement
- data Tag = Tag' Text Text
- newTag :: Text -> Text -> Tag
- data TrackedActionLastAccessed = TrackedActionLastAccessed' (Maybe ISO8601) (Maybe Text) (Maybe Text) (Maybe Text)
- newTrackedActionLastAccessed :: TrackedActionLastAccessed
- data User = User' (Maybe ISO8601) (Maybe Text) (Maybe AttachedPermissionsBoundary) (Maybe [Tag]) Text Text Text ISO8601
- newUser :: Text -> Text -> Text -> UTCTime -> User
- data UserDetail = UserDetail' (Maybe [Text]) (Maybe Text) (Maybe Text) (Maybe ISO8601) (Maybe Text) (Maybe Text) (Maybe AttachedPermissionsBoundary) (Maybe [PolicyDetail]) (Maybe [Tag]) (Maybe [AttachedPolicy])
- newUserDetail :: UserDetail
- data VirtualMFADevice = VirtualMFADevice' (Maybe (Sensitive Base64)) (Maybe (Sensitive Base64)) (Maybe User) (Maybe ISO8601) (Maybe [Tag]) Text
- newVirtualMFADevice :: Text -> VirtualMFADevice
Service Configuration
defaultService :: Service Source #
API version 2010-05-08 of the Amazon Identity and Access Management SDK configuration.
Errors
Error matchers are designed for use with the functions provided by
Control.Exception.Lens.
This allows catching (and rethrowing) service specific errors returned
by IAM.
CredentialReportNotPresentException
_CredentialReportNotPresentException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the credential report does not exist. To generate a credential report, use GenerateCredentialReport.
CredentialReportNotReadyException
_CredentialReportNotReadyException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the credential report is still being generated.
MalformedPolicyDocumentException
_MalformedPolicyDocumentException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the policy document was malformed. The error message describes the specific error.
EntityAlreadyExistsException
_EntityAlreadyExistsException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because it attempted to create a resource that already exists.
MalformedCertificateException
_MalformedCertificateException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the certificate was malformed or expired. The error message describes the specific error.
CredentialReportExpiredException
_CredentialReportExpiredException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the most recent credential report has expired. To generate a new credential report, use GenerateCredentialReport. For more information about credential report expiration, see Getting credential reports in the IAM User Guide.
UnmodifiableEntityException
_UnmodifiableEntityException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because only the service that depends on the service-linked role can modify or delete the role on your behalf. The error message includes the name of the service that depends on this service-linked role. You must request the change through that service.
DuplicateCertificateException
_DuplicateCertificateException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the same certificate is associated with an IAM user in the account.
DeleteConflictException
_DeleteConflictException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because it attempted to delete a resource that has attached subordinate entities. The error message describes these entities.
NoSuchEntityException
_NoSuchEntityException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because it referenced a resource entity that does not exist. The error message describes the resource.
InvalidCertificateException
_InvalidCertificateException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the certificate is invalid.
PolicyNotAttachableException
_PolicyNotAttachableException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request failed because Amazon Web Services service role policies can only be attached to the service-linked role for that service.
ServiceNotSupportedException
_ServiceNotSupportedException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The specified service does not support service-specific credentials.
UnrecognizedPublicKeyEncodingException
_UnrecognizedPublicKeyEncodingException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the public key encoding format is unsupported or unrecognized.
ReportGenerationLimitExceededException
_ReportGenerationLimitExceededException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request failed because the maximum number of concurrent requests for this account are already running.
InvalidUserTypeException
_InvalidUserTypeException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the type of user for the transaction was incorrect.
ServiceFailureException
_ServiceFailureException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request processing has failed because of an unknown error, exception or failure.
ConcurrentModificationException
_ConcurrentModificationException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because multiple requests to change this object were submitted simultaneously. Wait a few minutes and submit your request again.
InvalidInputException
_InvalidInputException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because an invalid or out-of-range value was supplied for an input parameter.
InvalidPublicKeyException
_InvalidPublicKeyException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the public key is malformed or otherwise invalid.
InvalidAuthenticationCodeException
_InvalidAuthenticationCodeException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the authentication code was not recognized. The error message describes the specific error.
EntityTemporarilyUnmodifiableException
_EntityTemporarilyUnmodifiableException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because it referenced an entity that is temporarily unmodifiable, such as a user name that was deleted and then recreated. The error indicates that the request is likely to succeed if you try again after waiting several minutes. The error message describes the entity.
DuplicateSSHPublicKeyException
_DuplicateSSHPublicKeyException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the SSH public key is already associated with the specified IAM user.
KeyPairMismatchException
_KeyPairMismatchException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the public key certificate and the private key do not match.
PolicyEvaluationException
_PolicyEvaluationException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request failed because a provided policy could not be successfully evaluated. An additional detailed message indicates the source of the failure.
PasswordPolicyViolationException
_PasswordPolicyViolationException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because the provided password did not meet the requirements imposed by the account password policy.
LimitExceededException
_LimitExceededException :: AsError a => Getting (First ServiceError) a ServiceError Source #
The request was rejected because it attempted to create resources beyond the current Amazon Web Services account limits. The error message describes the limit exceeded.
Waiters
Waiters poll by repeatedly sending a request until some remote success condition
configured by the Wait specification is fulfilled. The Wait specification
determines how many attempts should be made, in addition to delay and retry strategies.
InstanceProfileExists
newInstanceProfileExists :: Wait GetInstanceProfile Source #
Polls GetInstanceProfile every 1 seconds until a successful state is reached. An error is returned after 40 failed checks.
UserExists
newUserExists :: Wait GetUser Source #
Polls GetUser every 1 seconds until a successful state is reached. An error is returned after 20 failed checks.
RoleExists
newRoleExists :: Wait GetRole Source #
Polls GetRole every 1 seconds until a successful state is reached. An error is returned after 20 failed checks.
PolicyExists
newPolicyExists :: Wait GetPolicy Source #
Polls GetPolicy every 1 seconds until a successful state is reached. An error is returned after 20 failed checks.
Operations
Some AWS operations return results that are incomplete and require subsequent
requests in order to obtain the entire result set. The process of sending
subsequent requests to continue where a previous request left off is called
pagination. For example, the ListObjects operation of Amazon S3 returns up to
1000 objects at a time, and you must send subsequent requests with the
appropriate Marker in order to retrieve the next page of results.
Operations that have an AWSPager instance can transparently perform subsequent
requests, correctly setting Markers and other request facets to iterate through
the entire result set of a truncated API operation. Operations which support
this have an additional note in the documentation.
Many operations have the ability to filter results on the server side. See the individual operation parameters for details.
GetContextKeysForPrincipalPolicy
data GetContextKeysForPrincipalPolicy Source #
See: newGetContextKeysForPrincipalPolicy smart constructor.
Constructors
| GetContextKeysForPrincipalPolicy' (Maybe [Text]) Text |
Instances
newGetContextKeysForPrincipalPolicy Source #
Arguments
| :: Text | |
| -> GetContextKeysForPrincipalPolicy |
Create a value of GetContextKeysForPrincipalPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:policyInputList:GetContextKeysForPrincipalPolicy', getContextKeysForPrincipalPolicy_policyInputList - An optional list of additional policies for which you want the list of
context keys that are referenced.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
$sel:policySourceArn:GetContextKeysForPrincipalPolicy', getContextKeysForPrincipalPolicy_policySourceArn - The ARN of a user, group, or role whose policies contain the context
keys that you want listed. If you specify a user, the list includes
context keys that are found in all policies that are attached to the
user. The list also includes all groups that the user is a member of. If
you pick a group or a role, then it includes only those context keys
that are found in policies attached to that entity. Note that all
parameters are shown in unencoded form here for clarity, but must be URL
encoded to be included as a part of a real HTML request.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
data GetContextKeysForPolicyResponse Source #
Contains the response to a successful GetContextKeysForPrincipalPolicy or GetContextKeysForCustomPolicy request.
See: newGetContextKeysForPolicyResponse smart constructor.
Constructors
| GetContextKeysForPolicyResponse' (Maybe [Text]) |
Instances
newGetContextKeysForPolicyResponse :: GetContextKeysForPolicyResponse Source #
Create a value of GetContextKeysForPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:contextKeyNames:GetContextKeysForPolicyResponse', getContextKeysForPolicyResponse_contextKeyNames - The list of context keys that are referenced in the input policies.
ListPolicies (Paginated)
data ListPolicies Source #
See: newListPolicies smart constructor.
Constructors
| ListPolicies' (Maybe Text) (Maybe Bool) (Maybe Text) (Maybe PolicyScopeType) (Maybe Natural) (Maybe PolicyUsageType) |
Instances
newListPolicies :: ListPolicies Source #
Create a value of ListPolicies with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:pathPrefix:ListPolicies', listPolicies_pathPrefix - The path prefix for filtering the results. This parameter is optional.
If it is not included, it defaults to a slash (/), listing all
policies. This parameter allows (through its
regex pattern) a string of characters
consisting of either a forward slash (/) by itself or a string that
must begin and end with forward slashes. In addition, it can contain any
ASCII character from the ! (\u0021) through the DEL character
(\u007F), including most punctuation characters, digits, and upper
and lowercased letters.
$sel:onlyAttached:ListPolicies', listPolicies_onlyAttached - A flag to filter the results to only the attached policies.
When OnlyAttached is true, the returned list contains only the
policies that are attached to an IAM user, group, or role. When
OnlyAttached is false, or when the parameter is not included, all
policies are returned.
$sel:marker:ListPolicies', listPolicies_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:scope:ListPolicies', listPolicies_scope - The scope to use for filtering the results.
To list only Amazon Web Services managed policies, set Scope to AWS.
To list only the customer managed policies in your Amazon Web Services
account, set Scope to Local.
This parameter is optional. If it is not included, or if it is set to
All, all policies are returned.
$sel:maxItems:ListPolicies', listPolicies_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:policyUsageFilter:ListPolicies', listPolicies_policyUsageFilter - The policy usage method to use for filtering the results.
To list only permissions policies,
set PolicyUsageFilter to PermissionsPolicy. To list only the
policies used to set permissions boundaries, set the value
to PermissionsBoundary.
This parameter is optional. If it is not included, all policies are returned.
data ListPoliciesResponse Source #
Contains the response to a successful ListPolicies request.
See: newListPoliciesResponse smart constructor.
Instances
newListPoliciesResponse Source #
Arguments
| :: Int | |
| -> ListPoliciesResponse |
Create a value of ListPoliciesResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListPolicies', listPoliciesResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListPoliciesResponse', listPoliciesResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:policies:ListPoliciesResponse', listPoliciesResponse_policies - A list of policies.
$sel:httpStatus:ListPoliciesResponse', listPoliciesResponse_httpStatus - The response's http status code.
CreatePolicy
data CreatePolicy Source #
See: newCreatePolicy smart constructor.
Instances
Arguments
| :: Text | |
| -> Text | |
| -> CreatePolicy |
Create a value of CreatePolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:path:CreatePolicy', createPolicy_path - The path for the policy.
For more information about paths, see IAM identifiers in the IAM User Guide.
This parameter is optional. If it is not included, it defaults to a slash (/).
This parameter allows (through its
regex pattern) a string of characters
consisting of either a forward slash (/) by itself or a string that
must begin and end with forward slashes. In addition, it can contain any
ASCII character from the ! (\u0021) through the DEL character
(\u007F), including most punctuation characters, digits, and upper
and lowercased letters.
You cannot use an asterisk (*) in the path name.
$sel:description:CreatePolicy', createPolicy_description - A friendly description of the policy.
Typically used to store information about the permissions defined in the policy. For example, "Grants access to production DynamoDB tables."
The policy description is immutable. After a value is assigned, it cannot be changed.
$sel:tags:CreatePolicy', createPolicy_tags - A list of tags that you want to attach to the new IAM customer managed
policy. Each tag consists of a key name and an associated value. For
more information about tagging, see
Tagging IAM resources
in the IAM User Guide.
If any one of the tags is invalid or if you exceed the allowed maximum number of tags, then the entire request fails and the resource is not created.
$sel:policyName:CreatePolicy', createPolicy_policyName - The friendly name of the policy.
IAM user, group, role, and policy names must be unique within the account. Names are not distinguished by case. For example, you cannot create resources named both "MyResource" and "myresource".
$sel:policyDocument:CreatePolicy', createPolicy_policyDocument - The JSON policy document that you want to use as the content for the new
policy.
You must provide policies in JSON format in IAM. However, for CloudFormation templates formatted in YAML, you can provide the policy in JSON or YAML format. CloudFormation always converts a YAML policy to JSON format before submitting it to IAM.
The maximum length of the policy document that you can pass in this operation, including whitespace, is listed below. To view the maximum character counts of a managed policy with no whitespaces, see IAM and STS character quotas.
To learn more about JSON policy grammar, see Grammar of the IAM JSON policy language in the IAM User Guide.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
data CreatePolicyResponse Source #
Contains the response to a successful CreatePolicy request.
See: newCreatePolicyResponse smart constructor.
Constructors
| CreatePolicyResponse' (Maybe Policy) Int |
Instances
newCreatePolicyResponse Source #
Arguments
| :: Int | |
| -> CreatePolicyResponse |
Create a value of CreatePolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:policy:CreatePolicyResponse', createPolicyResponse_policy - A structure containing details about the new policy.
$sel:httpStatus:CreatePolicyResponse', createPolicyResponse_httpStatus - The response's http status code.
ListInstanceProfilesForRole (Paginated)
data ListInstanceProfilesForRole Source #
See: newListInstanceProfilesForRole smart constructor.
Instances
newListInstanceProfilesForRole Source #
Create a value of ListInstanceProfilesForRole with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListInstanceProfilesForRole', listInstanceProfilesForRole_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListInstanceProfilesForRole', listInstanceProfilesForRole_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:roleName:ListInstanceProfilesForRole', listInstanceProfilesForRole_roleName - The name of the role to list instance profiles for.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data ListInstanceProfilesForRoleResponse Source #
Contains the response to a successful ListInstanceProfilesForRole request.
See: newListInstanceProfilesForRoleResponse smart constructor.
Constructors
| ListInstanceProfilesForRoleResponse' (Maybe Text) (Maybe Bool) Int [InstanceProfile] |
Instances
newListInstanceProfilesForRoleResponse Source #
Arguments
| :: Int | |
| -> ListInstanceProfilesForRoleResponse |
Create a value of ListInstanceProfilesForRoleResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListInstanceProfilesForRole', listInstanceProfilesForRoleResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListInstanceProfilesForRoleResponse', listInstanceProfilesForRoleResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListInstanceProfilesForRoleResponse', listInstanceProfilesForRoleResponse_httpStatus - The response's http status code.
$sel:instanceProfiles:ListInstanceProfilesForRoleResponse', listInstanceProfilesForRoleResponse_instanceProfiles - A list of instance profiles.
AttachGroupPolicy
data AttachGroupPolicy Source #
See: newAttachGroupPolicy smart constructor.
Constructors
| AttachGroupPolicy' Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> AttachGroupPolicy |
Create a value of AttachGroupPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:groupName:AttachGroupPolicy', attachGroupPolicy_groupName - The name (friendly name, not ARN) of the group to attach the policy to.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyArn:AttachGroupPolicy', attachGroupPolicy_policyArn - The Amazon Resource Name (ARN) of the IAM policy you want to attach.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
data AttachGroupPolicyResponse Source #
See: newAttachGroupPolicyResponse smart constructor.
Constructors
| AttachGroupPolicyResponse' | |
Instances
newAttachGroupPolicyResponse :: AttachGroupPolicyResponse Source #
Create a value of AttachGroupPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
CreateAccessKey
data CreateAccessKey Source #
See: newCreateAccessKey smart constructor.
Constructors
| CreateAccessKey' (Maybe Text) |
Instances
newCreateAccessKey :: CreateAccessKey Source #
Create a value of CreateAccessKey with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:CreateAccessKey', createAccessKey_userName - The name of the IAM user that the new key will belong to.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data CreateAccessKeyResponse Source #
Contains the response to a successful CreateAccessKey request.
See: newCreateAccessKeyResponse smart constructor.
Constructors
| CreateAccessKeyResponse' Int AccessKeyInfo |
Instances
newCreateAccessKeyResponse Source #
Arguments
| :: Int | |
| -> AccessKeyInfo | |
| -> CreateAccessKeyResponse |
Create a value of CreateAccessKeyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:CreateAccessKeyResponse', createAccessKeyResponse_httpStatus - The response's http status code.
$sel:accessKey:CreateAccessKeyResponse', createAccessKeyResponse_accessKey - A structure with details about the access key.
ListRoleTags
data ListRoleTags Source #
See: newListRoleTags smart constructor.
Instances
Arguments
| :: Text | |
| -> ListRoleTags |
Create a value of ListRoleTags with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListRoleTags', listRoleTags_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListRoleTags', listRoleTags_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:roleName:ListRoleTags', listRoleTags_roleName - The name of the IAM role for which you want to see the list of tags.
This parameter accepts (through its regex pattern) a string of characters that consist of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data ListRoleTagsResponse Source #
See: newListRoleTagsResponse smart constructor.
Instances
newListRoleTagsResponse Source #
Arguments
| :: Int | |
| -> ListRoleTagsResponse |
Create a value of ListRoleTagsResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListRoleTags', listRoleTagsResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListRoleTagsResponse', listRoleTagsResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListRoleTagsResponse', listRoleTagsResponse_httpStatus - The response's http status code.
$sel:tags:ListRoleTagsResponse', listRoleTagsResponse_tags - The list of tags that are currently attached to the role. Each tag
consists of a key name and an associated value. If no tags are attached
to the specified resource, the response contains an empty list.
ListSSHPublicKeys (Paginated)
data ListSSHPublicKeys Source #
See: newListSSHPublicKeys smart constructor.
Instances
newListSSHPublicKeys :: ListSSHPublicKeys Source #
Create a value of ListSSHPublicKeys with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:ListSSHPublicKeys', listSSHPublicKeys_userName - The name of the IAM user to list SSH public keys for. If none is
specified, the UserName field is determined implicitly based on the
Amazon Web Services access key used to sign the request.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:marker:ListSSHPublicKeys', listSSHPublicKeys_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListSSHPublicKeys', listSSHPublicKeys_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
data ListSSHPublicKeysResponse Source #
Contains the response to a successful ListSSHPublicKeys request.
See: newListSSHPublicKeysResponse smart constructor.
Constructors
| ListSSHPublicKeysResponse' (Maybe [SSHPublicKeyMetadata]) (Maybe Text) (Maybe Bool) Int |
Instances
newListSSHPublicKeysResponse Source #
Create a value of ListSSHPublicKeysResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:sSHPublicKeys:ListSSHPublicKeysResponse', listSSHPublicKeysResponse_sSHPublicKeys - A list of the SSH public keys assigned to IAM user.
$sel:marker:ListSSHPublicKeys', listSSHPublicKeysResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListSSHPublicKeysResponse', listSSHPublicKeysResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListSSHPublicKeysResponse', listSSHPublicKeysResponse_httpStatus - The response's http status code.
UntagOpenIDConnectProvider
data UntagOpenIDConnectProvider Source #
See: newUntagOpenIDConnectProvider smart constructor.
Constructors
| UntagOpenIDConnectProvider' Text [Text] |
Instances
newUntagOpenIDConnectProvider Source #
Arguments
| :: Text | |
| -> UntagOpenIDConnectProvider |
Create a value of UntagOpenIDConnectProvider with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:openIDConnectProviderArn:UntagOpenIDConnectProvider', untagOpenIDConnectProvider_openIDConnectProviderArn - The ARN of the OIDC provider in IAM from which you want to remove tags.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:tagKeys:UntagOpenIDConnectProvider', untagOpenIDConnectProvider_tagKeys - A list of key names as a simple array of strings. The tags with matching
keys are removed from the specified OIDC provider.
data UntagOpenIDConnectProviderResponse Source #
See: newUntagOpenIDConnectProviderResponse smart constructor.
Constructors
| UntagOpenIDConnectProviderResponse' | |
Instances
| Eq UntagOpenIDConnectProviderResponse Source # | |
| Read UntagOpenIDConnectProviderResponse Source # | |
| Show UntagOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.UntagOpenIDConnectProvider Methods showsPrec :: Int -> UntagOpenIDConnectProviderResponse -> ShowS # | |
| Generic UntagOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.UntagOpenIDConnectProvider Associated Types type Rep UntagOpenIDConnectProviderResponse :: Type -> Type # | |
| NFData UntagOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.UntagOpenIDConnectProvider Methods rnf :: UntagOpenIDConnectProviderResponse -> () # | |
| type Rep UntagOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.UntagOpenIDConnectProvider | |
newUntagOpenIDConnectProviderResponse :: UntagOpenIDConnectProviderResponse Source #
Create a value of UntagOpenIDConnectProviderResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
ListOpenIDConnectProviders
data ListOpenIDConnectProviders Source #
See: newListOpenIDConnectProviders smart constructor.
Constructors
| ListOpenIDConnectProviders' | |
Instances
newListOpenIDConnectProviders :: ListOpenIDConnectProviders Source #
Create a value of ListOpenIDConnectProviders with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
data ListOpenIDConnectProvidersResponse Source #
Contains the response to a successful ListOpenIDConnectProviders request.
See: newListOpenIDConnectProvidersResponse smart constructor.
Constructors
| ListOpenIDConnectProvidersResponse' (Maybe [OpenIDConnectProviderListEntry]) Int |
Instances
newListOpenIDConnectProvidersResponse Source #
Arguments
| :: Int | |
| -> ListOpenIDConnectProvidersResponse |
Create a value of ListOpenIDConnectProvidersResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:openIDConnectProviderList:ListOpenIDConnectProvidersResponse', listOpenIDConnectProvidersResponse_openIDConnectProviderList - The list of IAM OIDC provider resource objects defined in the Amazon Web
Services account.
$sel:httpStatus:ListOpenIDConnectProvidersResponse', listOpenIDConnectProvidersResponse_httpStatus - The response's http status code.
CreateVirtualMFADevice
data CreateVirtualMFADevice Source #
See: newCreateVirtualMFADevice smart constructor.
Instances
newCreateVirtualMFADevice Source #
Create a value of CreateVirtualMFADevice with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:path:CreateVirtualMFADevice', createVirtualMFADevice_path - The path for the virtual MFA device. For more information about paths,
see
IAM identifiers
in the IAM User Guide.
This parameter is optional. If it is not included, it defaults to a slash (/).
This parameter allows (through its
regex pattern) a string of characters
consisting of either a forward slash (/) by itself or a string that
must begin and end with forward slashes. In addition, it can contain any
ASCII character from the ! (\u0021) through the DEL character
(\u007F), including most punctuation characters, digits, and upper
and lowercased letters.
$sel:tags:CreateVirtualMFADevice', createVirtualMFADevice_tags - A list of tags that you want to attach to the new IAM virtual MFA
device. Each tag consists of a key name and an associated value. For
more information about tagging, see
Tagging IAM resources
in the IAM User Guide.
If any one of the tags is invalid or if you exceed the allowed maximum number of tags, then the entire request fails and the resource is not created.
$sel:virtualMFADeviceName:CreateVirtualMFADevice', createVirtualMFADevice_virtualMFADeviceName - The name of the virtual MFA device. Use with path to uniquely identify a
virtual MFA device.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data CreateVirtualMFADeviceResponse Source #
Contains the response to a successful CreateVirtualMFADevice request.
See: newCreateVirtualMFADeviceResponse smart constructor.
Constructors
| CreateVirtualMFADeviceResponse' Int VirtualMFADevice |
Instances
newCreateVirtualMFADeviceResponse Source #
Arguments
| :: Int | |
| -> VirtualMFADevice | |
| -> CreateVirtualMFADeviceResponse |
Create a value of CreateVirtualMFADeviceResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:CreateVirtualMFADeviceResponse', createVirtualMFADeviceResponse_httpStatus - The response's http status code.
$sel:virtualMFADevice:CreateVirtualMFADeviceResponse', createVirtualMFADeviceResponse_virtualMFADevice - A structure containing details about the new virtual MFA device.
DeleteAccountPasswordPolicy
data DeleteAccountPasswordPolicy Source #
See: newDeleteAccountPasswordPolicy smart constructor.
Constructors
| DeleteAccountPasswordPolicy' | |
Instances
newDeleteAccountPasswordPolicy :: DeleteAccountPasswordPolicy Source #
Create a value of DeleteAccountPasswordPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
data DeleteAccountPasswordPolicyResponse Source #
See: newDeleteAccountPasswordPolicyResponse smart constructor.
Constructors
| DeleteAccountPasswordPolicyResponse' | |
Instances
| Eq DeleteAccountPasswordPolicyResponse Source # | |
| Read DeleteAccountPasswordPolicyResponse Source # | |
Defined in Amazonka.IAM.DeleteAccountPasswordPolicy | |
| Show DeleteAccountPasswordPolicyResponse Source # | |
Defined in Amazonka.IAM.DeleteAccountPasswordPolicy Methods showsPrec :: Int -> DeleteAccountPasswordPolicyResponse -> ShowS # show :: DeleteAccountPasswordPolicyResponse -> String # showList :: [DeleteAccountPasswordPolicyResponse] -> ShowS # | |
| Generic DeleteAccountPasswordPolicyResponse Source # | |
Defined in Amazonka.IAM.DeleteAccountPasswordPolicy Associated Types type Rep DeleteAccountPasswordPolicyResponse :: Type -> Type # | |
| NFData DeleteAccountPasswordPolicyResponse Source # | |
Defined in Amazonka.IAM.DeleteAccountPasswordPolicy Methods rnf :: DeleteAccountPasswordPolicyResponse -> () # | |
| type Rep DeleteAccountPasswordPolicyResponse Source # | |
Defined in Amazonka.IAM.DeleteAccountPasswordPolicy | |
newDeleteAccountPasswordPolicyResponse :: DeleteAccountPasswordPolicyResponse Source #
Create a value of DeleteAccountPasswordPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
UpdateAccountPasswordPolicy
data UpdateAccountPasswordPolicy Source #
See: newUpdateAccountPasswordPolicy smart constructor.
Constructors
| UpdateAccountPasswordPolicy' (Maybe Natural) (Maybe Bool) (Maybe Natural) (Maybe Bool) (Maybe Natural) (Maybe Bool) (Maybe Bool) (Maybe Bool) (Maybe Bool) |
Instances
newUpdateAccountPasswordPolicy :: UpdateAccountPasswordPolicy Source #
Create a value of UpdateAccountPasswordPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:minimumPasswordLength:UpdateAccountPasswordPolicy', updateAccountPasswordPolicy_minimumPasswordLength - The minimum number of characters allowed in an IAM user password.
If you do not specify a value for this parameter, then the operation
uses the default value of 6.
$sel:requireNumbers:UpdateAccountPasswordPolicy', updateAccountPasswordPolicy_requireNumbers - Specifies whether IAM user passwords must contain at least one numeric
character (0 to 9).
If you do not specify a value for this parameter, then the operation
uses the default value of false. The result is that passwords do not
require at least one numeric character.
$sel:passwordReusePrevention:UpdateAccountPasswordPolicy', updateAccountPasswordPolicy_passwordReusePrevention - Specifies the number of previous passwords that IAM users are prevented
from reusing.
If you do not specify a value for this parameter, then the operation
uses the default value of 0. The result is that IAM users are not
prevented from reusing previous passwords.
$sel:requireLowercaseCharacters:UpdateAccountPasswordPolicy', updateAccountPasswordPolicy_requireLowercaseCharacters - Specifies whether IAM user passwords must contain at least one lowercase
character from the ISO basic Latin alphabet (a to z).
If you do not specify a value for this parameter, then the operation
uses the default value of false. The result is that passwords do not
require at least one lowercase character.
$sel:maxPasswordAge:UpdateAccountPasswordPolicy', updateAccountPasswordPolicy_maxPasswordAge - The number of days that an IAM user password is valid.
If you do not specify a value for this parameter, then the operation
uses the default value of 0. The result is that IAM user passwords
never expire.
$sel:hardExpiry:UpdateAccountPasswordPolicy', updateAccountPasswordPolicy_hardExpiry - Prevents IAM users from setting a new password after their password has
expired. The IAM user cannot be accessed until an administrator resets
the password.
If you do not specify a value for this parameter, then the operation
uses the default value of false. The result is that IAM users can
change their passwords after they expire and continue to sign in as the
user.
$sel:requireSymbols:UpdateAccountPasswordPolicy', updateAccountPasswordPolicy_requireSymbols - Specifies whether IAM user passwords must contain at least one of the
following non-alphanumeric characters:
! @ # $ % ^ & * ( ) _ + - = [ ] { } | '
If you do not specify a value for this parameter, then the operation
uses the default value of false. The result is that passwords do not
require at least one symbol character.
$sel:requireUppercaseCharacters:UpdateAccountPasswordPolicy', updateAccountPasswordPolicy_requireUppercaseCharacters - Specifies whether IAM user passwords must contain at least one uppercase
character from the ISO basic Latin alphabet (A to Z).
If you do not specify a value for this parameter, then the operation
uses the default value of false. The result is that passwords do not
require at least one uppercase character.
$sel:allowUsersToChangePassword:UpdateAccountPasswordPolicy', updateAccountPasswordPolicy_allowUsersToChangePassword - Allows all IAM users in your account to use the Amazon Web Services
Management Console to change their own passwords. For more information,
see
Letting IAM users change their own passwords
in the IAM User Guide.
If you do not specify a value for this parameter, then the operation
uses the default value of false. The result is that IAM users in the
account do not automatically have permissions to change their own
password.
data UpdateAccountPasswordPolicyResponse Source #
See: newUpdateAccountPasswordPolicyResponse smart constructor.
Constructors
| UpdateAccountPasswordPolicyResponse' | |
Instances
| Eq UpdateAccountPasswordPolicyResponse Source # | |
| Read UpdateAccountPasswordPolicyResponse Source # | |
Defined in Amazonka.IAM.UpdateAccountPasswordPolicy | |
| Show UpdateAccountPasswordPolicyResponse Source # | |
Defined in Amazonka.IAM.UpdateAccountPasswordPolicy Methods showsPrec :: Int -> UpdateAccountPasswordPolicyResponse -> ShowS # show :: UpdateAccountPasswordPolicyResponse -> String # showList :: [UpdateAccountPasswordPolicyResponse] -> ShowS # | |
| Generic UpdateAccountPasswordPolicyResponse Source # | |
Defined in Amazonka.IAM.UpdateAccountPasswordPolicy Associated Types type Rep UpdateAccountPasswordPolicyResponse :: Type -> Type # | |
| NFData UpdateAccountPasswordPolicyResponse Source # | |
Defined in Amazonka.IAM.UpdateAccountPasswordPolicy Methods rnf :: UpdateAccountPasswordPolicyResponse -> () # | |
| type Rep UpdateAccountPasswordPolicyResponse Source # | |
Defined in Amazonka.IAM.UpdateAccountPasswordPolicy | |
newUpdateAccountPasswordPolicyResponse :: UpdateAccountPasswordPolicyResponse Source #
Create a value of UpdateAccountPasswordPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
AttachRolePolicy
data AttachRolePolicy Source #
See: newAttachRolePolicy smart constructor.
Constructors
| AttachRolePolicy' Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> AttachRolePolicy |
Create a value of AttachRolePolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:roleName:AttachRolePolicy', attachRolePolicy_roleName - The name (friendly name, not ARN) of the role to attach the policy to.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyArn:AttachRolePolicy', attachRolePolicy_policyArn - The Amazon Resource Name (ARN) of the IAM policy you want to attach.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
data AttachRolePolicyResponse Source #
See: newAttachRolePolicyResponse smart constructor.
Constructors
| AttachRolePolicyResponse' | |
Instances
newAttachRolePolicyResponse :: AttachRolePolicyResponse Source #
Create a value of AttachRolePolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
UpdateSSHPublicKey
data UpdateSSHPublicKey Source #
See: newUpdateSSHPublicKey smart constructor.
Constructors
| UpdateSSHPublicKey' Text Text StatusType |
Instances
newUpdateSSHPublicKey Source #
Arguments
| :: Text | |
| -> Text | |
| -> StatusType | |
| -> UpdateSSHPublicKey |
Create a value of UpdateSSHPublicKey with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:UpdateSSHPublicKey', updateSSHPublicKey_userName - The name of the IAM user associated with the SSH public key.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:sSHPublicKeyId:UpdateSSHPublicKey', updateSSHPublicKey_sSHPublicKeyId - The unique identifier for the SSH public key.
This parameter allows (through its regex pattern) a string of characters that can consist of any upper or lowercased letter or digit.
$sel:status:UpdateSSHPublicKey', updateSSHPublicKey_status - The status to assign to the SSH public key. Active means that the key
can be used for authentication with an CodeCommit repository. Inactive
means that the key cannot be used.
data UpdateSSHPublicKeyResponse Source #
See: newUpdateSSHPublicKeyResponse smart constructor.
Constructors
| UpdateSSHPublicKeyResponse' | |
Instances
newUpdateSSHPublicKeyResponse :: UpdateSSHPublicKeyResponse Source #
Create a value of UpdateSSHPublicKeyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
DeleteSSHPublicKey
data DeleteSSHPublicKey Source #
See: newDeleteSSHPublicKey smart constructor.
Constructors
| DeleteSSHPublicKey' Text Text |
Instances
newDeleteSSHPublicKey Source #
Arguments
| :: Text | |
| -> Text | |
| -> DeleteSSHPublicKey |
Create a value of DeleteSSHPublicKey with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:DeleteSSHPublicKey', deleteSSHPublicKey_userName - The name of the IAM user associated with the SSH public key.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:sSHPublicKeyId:DeleteSSHPublicKey', deleteSSHPublicKey_sSHPublicKeyId - The unique identifier for the SSH public key.
This parameter allows (through its regex pattern) a string of characters that can consist of any upper or lowercased letter or digit.
data DeleteSSHPublicKeyResponse Source #
See: newDeleteSSHPublicKeyResponse smart constructor.
Constructors
| DeleteSSHPublicKeyResponse' | |
Instances
newDeleteSSHPublicKeyResponse :: DeleteSSHPublicKeyResponse Source #
Create a value of DeleteSSHPublicKeyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
GetUserPolicy
data GetUserPolicy Source #
See: newGetUserPolicy smart constructor.
Constructors
| GetUserPolicy' Text Text |
Instances
Create a value of GetUserPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:GetUserPolicy', getUserPolicy_userName - The name of the user who the policy is associated with.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyName:GetUserPolicy', getUserPolicy_policyName - The name of the policy document to get.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data GetUserPolicyResponse Source #
Contains the response to a successful GetUserPolicy request.
See: newGetUserPolicyResponse smart constructor.
Constructors
| GetUserPolicyResponse' Int Text Text Text |
Instances
newGetUserPolicyResponse Source #
Arguments
| :: Int | |
| -> Text | |
| -> Text | |
| -> Text | |
| -> GetUserPolicyResponse |
Create a value of GetUserPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:GetUserPolicyResponse', getUserPolicyResponse_httpStatus - The response's http status code.
$sel:userName:GetUserPolicy', getUserPolicyResponse_userName - The user the policy is associated with.
$sel:policyName:GetUserPolicy', getUserPolicyResponse_policyName - The name of the policy.
$sel:policyDocument:GetUserPolicyResponse', getUserPolicyResponse_policyDocument - The policy document.
IAM stores policies in JSON format. However, resources that were created using CloudFormation templates can be formatted in YAML. CloudFormation always converts a YAML policy to JSON format before submitting it to IAM.
UpdateServiceSpecificCredential
data UpdateServiceSpecificCredential Source #
See: newUpdateServiceSpecificCredential smart constructor.
Constructors
| UpdateServiceSpecificCredential' (Maybe Text) Text StatusType |
Instances
newUpdateServiceSpecificCredential Source #
Arguments
| :: Text |
|
| -> StatusType | |
| -> UpdateServiceSpecificCredential |
Create a value of UpdateServiceSpecificCredential with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:UpdateServiceSpecificCredential', updateServiceSpecificCredential_userName - The name of the IAM user associated with the service-specific
credential. If you do not specify this value, then the operation assumes
the user whose credentials are used to call the operation.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:serviceSpecificCredentialId:UpdateServiceSpecificCredential', updateServiceSpecificCredential_serviceSpecificCredentialId - The unique identifier of the service-specific credential.
This parameter allows (through its regex pattern) a string of characters that can consist of any upper or lowercased letter or digit.
$sel:status:UpdateServiceSpecificCredential', updateServiceSpecificCredential_status - The status to be assigned to the service-specific credential.
data UpdateServiceSpecificCredentialResponse Source #
See: newUpdateServiceSpecificCredentialResponse smart constructor.
Constructors
| UpdateServiceSpecificCredentialResponse' | |
Instances
newUpdateServiceSpecificCredentialResponse :: UpdateServiceSpecificCredentialResponse Source #
Create a value of UpdateServiceSpecificCredentialResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
DeleteServiceSpecificCredential
data DeleteServiceSpecificCredential Source #
See: newDeleteServiceSpecificCredential smart constructor.
Constructors
| DeleteServiceSpecificCredential' (Maybe Text) Text |
Instances
newDeleteServiceSpecificCredential Source #
Arguments
| :: Text |
|
| -> DeleteServiceSpecificCredential |
Create a value of DeleteServiceSpecificCredential with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:DeleteServiceSpecificCredential', deleteServiceSpecificCredential_userName - The name of the IAM user associated with the service-specific
credential. If this value is not specified, then the operation assumes
the user whose credentials are used to call the operation.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:serviceSpecificCredentialId:DeleteServiceSpecificCredential', deleteServiceSpecificCredential_serviceSpecificCredentialId - The unique identifier of the service-specific credential. You can get
this value by calling ListServiceSpecificCredentials.
This parameter allows (through its regex pattern) a string of characters that can consist of any upper or lowercased letter or digit.
data DeleteServiceSpecificCredentialResponse Source #
See: newDeleteServiceSpecificCredentialResponse smart constructor.
Constructors
| DeleteServiceSpecificCredentialResponse' | |
Instances
newDeleteServiceSpecificCredentialResponse :: DeleteServiceSpecificCredentialResponse Source #
Create a value of DeleteServiceSpecificCredentialResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
ListAttachedRolePolicies (Paginated)
data ListAttachedRolePolicies Source #
See: newListAttachedRolePolicies smart constructor.
Instances
newListAttachedRolePolicies Source #
Create a value of ListAttachedRolePolicies with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:pathPrefix:ListAttachedRolePolicies', listAttachedRolePolicies_pathPrefix - The path prefix for filtering the results. This parameter is optional.
If it is not included, it defaults to a slash (/), listing all
policies.
This parameter allows (through its
regex pattern) a string of characters
consisting of either a forward slash (/) by itself or a string that
must begin and end with forward slashes. In addition, it can contain any
ASCII character from the ! (\u0021) through the DEL character
(\u007F), including most punctuation characters, digits, and upper
and lowercased letters.
$sel:marker:ListAttachedRolePolicies', listAttachedRolePolicies_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListAttachedRolePolicies', listAttachedRolePolicies_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:roleName:ListAttachedRolePolicies', listAttachedRolePolicies_roleName - The name (friendly name, not ARN) of the role to list attached policies
for.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data ListAttachedRolePoliciesResponse Source #
Contains the response to a successful ListAttachedRolePolicies request.
See: newListAttachedRolePoliciesResponse smart constructor.
Constructors
| ListAttachedRolePoliciesResponse' (Maybe [AttachedPolicy]) (Maybe Text) (Maybe Bool) Int |
Instances
newListAttachedRolePoliciesResponse Source #
Create a value of ListAttachedRolePoliciesResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:attachedPolicies:ListAttachedRolePoliciesResponse', listAttachedRolePoliciesResponse_attachedPolicies - A list of the attached policies.
$sel:marker:ListAttachedRolePolicies', listAttachedRolePoliciesResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListAttachedRolePoliciesResponse', listAttachedRolePoliciesResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListAttachedRolePoliciesResponse', listAttachedRolePoliciesResponse_httpStatus - The response's http status code.
GetRole
See: newGetRole smart constructor.
Instances
| Eq GetRole Source # | |
| Read GetRole Source # | |
| Show GetRole Source # | |
| Generic GetRole Source # | |
| NFData GetRole Source # | |
Defined in Amazonka.IAM.GetRole | |
| Hashable GetRole Source # | |
Defined in Amazonka.IAM.GetRole | |
| AWSRequest GetRole Source # | |
Defined in Amazonka.IAM.GetRole Associated Types type AWSResponse GetRole # Methods request :: GetRole -> Request GetRole # response :: MonadResource m => Logger -> Service -> Proxy GetRole -> ClientResponse ClientBody -> m (Either Error (ClientResponse (AWSResponse GetRole))) # | |
| ToHeaders GetRole Source # | |
Defined in Amazonka.IAM.GetRole | |
| ToPath GetRole Source # | |
Defined in Amazonka.IAM.GetRole Methods toPath :: GetRole -> ByteString # | |
| ToQuery GetRole Source # | |
Defined in Amazonka.IAM.GetRole Methods toQuery :: GetRole -> QueryString # | |
| type Rep GetRole Source # | |
Defined in Amazonka.IAM.GetRole | |
| type AWSResponse GetRole Source # | |
Defined in Amazonka.IAM.GetRole | |
Create a value of GetRole with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:roleName:GetRole', getRole_roleName - The name of the IAM role to get information about.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data GetRoleResponse Source #
Contains the response to a successful GetRole request.
See: newGetRoleResponse smart constructor.
Constructors
| GetRoleResponse' Int Role |
Instances
Create a value of GetRoleResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:GetRoleResponse', getRoleResponse_httpStatus - The response's http status code.
$sel:role':GetRoleResponse', getRoleResponse_role - A structure containing details about the IAM role.
DeactivateMFADevice
data DeactivateMFADevice Source #
See: newDeactivateMFADevice smart constructor.
Constructors
| DeactivateMFADevice' Text Text |
Instances
newDeactivateMFADevice Source #
Arguments
| :: Text | |
| -> Text | |
| -> DeactivateMFADevice |
Create a value of DeactivateMFADevice with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:DeactivateMFADevice', deactivateMFADevice_userName - The name of the user whose MFA device you want to deactivate.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:serialNumber:DeactivateMFADevice', deactivateMFADevice_serialNumber - The serial number that uniquely identifies the MFA device. For virtual
MFA devices, the serial number is the device ARN.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: =,.@:/-
data DeactivateMFADeviceResponse Source #
See: newDeactivateMFADeviceResponse smart constructor.
Constructors
| DeactivateMFADeviceResponse' | |
Instances
newDeactivateMFADeviceResponse :: DeactivateMFADeviceResponse Source #
Create a value of DeactivateMFADeviceResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
CreateOpenIDConnectProvider
data CreateOpenIDConnectProvider Source #
See: newCreateOpenIDConnectProvider smart constructor.
Instances
newCreateOpenIDConnectProvider Source #
Create a value of CreateOpenIDConnectProvider with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:clientIDList:CreateOpenIDConnectProvider', createOpenIDConnectProvider_clientIDList - Provides a list of client IDs, also known as audiences. When a mobile or
web app registers with an OpenID Connect provider, they establish a
value that identifies the application. This is the value that's sent as
the client_id parameter on OAuth requests.
You can register multiple client IDs with the same provider. For example, you might have multiple applications that use the same OIDC provider. You cannot register more than 100 client IDs with a single IAM OIDC provider.
There is no defined format for a client ID. The
CreateOpenIDConnectProviderRequest operation accepts client IDs up to
255 characters long.
$sel:tags:CreateOpenIDConnectProvider', createOpenIDConnectProvider_tags - A list of tags that you want to attach to the new IAM OpenID Connect
(OIDC) provider. Each tag consists of a key name and an associated
value. For more information about tagging, see
Tagging IAM resources
in the IAM User Guide.
If any one of the tags is invalid or if you exceed the allowed maximum number of tags, then the entire request fails and the resource is not created.
$sel:url:CreateOpenIDConnectProvider', createOpenIDConnectProvider_url - The URL of the identity provider. The URL must begin with https://
and should correspond to the iss claim in the provider's OpenID
Connect ID tokens. Per the OIDC standard, path components are allowed
but query parameters are not. Typically the URL consists of only a
hostname, like https://server.example.org or
https://example.com. The URL should not contain a port number.
You cannot register the same provider multiple times in a single Amazon Web Services account. If you try to submit a URL that has already been used for an OpenID Connect provider in the Amazon Web Services account, you will get an error.
$sel:thumbprintList:CreateOpenIDConnectProvider', createOpenIDConnectProvider_thumbprintList - A list of server certificate thumbprints for the OpenID Connect (OIDC)
identity provider's server certificates. Typically this list includes
only one entry. However, IAM lets you have up to five thumbprints for an
OIDC provider. This lets you maintain multiple thumbprints if the
identity provider is rotating certificates.
The server certificate thumbprint is the hex-encoded SHA-1 hash value of the X.509 certificate used by the domain where the OpenID Connect provider makes its keys available. It is always a 40-character string.
You must provide at least one thumbprint when creating an IAM OIDC
provider. For example, assume that the OIDC provider is
server.example.com and the provider stores its keys at
https://keys.server.example.com/openid-connect. In that case, the
thumbprint string would be the hex-encoded SHA-1 hash value of the
certificate used by https://keys.server.example.com.
For more information about obtaining the OIDC provider thumbprint, see Obtaining the thumbprint for an OpenID Connect provider in the IAM User Guide.
data CreateOpenIDConnectProviderResponse Source #
Contains the response to a successful CreateOpenIDConnectProvider request.
See: newCreateOpenIDConnectProviderResponse smart constructor.
Instances
newCreateOpenIDConnectProviderResponse Source #
Arguments
| :: Int | |
| -> CreateOpenIDConnectProviderResponse |
Create a value of CreateOpenIDConnectProviderResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:openIDConnectProviderArn:CreateOpenIDConnectProviderResponse', createOpenIDConnectProviderResponse_openIDConnectProviderArn - The Amazon Resource Name (ARN) of the new IAM OpenID Connect provider
that is created. For more information, see
OpenIDConnectProviderListEntry.
$sel:tags:CreateOpenIDConnectProvider', createOpenIDConnectProviderResponse_tags - A list of tags that are attached to the new IAM OIDC provider. The
returned list of tags is sorted by tag key. For more information about
tagging, see
Tagging IAM resources
in the IAM User Guide.
$sel:httpStatus:CreateOpenIDConnectProviderResponse', createOpenIDConnectProviderResponse_httpStatus - The response's http status code.
DeleteVirtualMFADevice
data DeleteVirtualMFADevice Source #
See: newDeleteVirtualMFADevice smart constructor.
Constructors
| DeleteVirtualMFADevice' Text |
Instances
newDeleteVirtualMFADevice Source #
Create a value of DeleteVirtualMFADevice with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:serialNumber:DeleteVirtualMFADevice', deleteVirtualMFADevice_serialNumber - The serial number that uniquely identifies the MFA device. For virtual
MFA devices, the serial number is the same as the ARN.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: =,.@:/-
data DeleteVirtualMFADeviceResponse Source #
See: newDeleteVirtualMFADeviceResponse smart constructor.
Constructors
| DeleteVirtualMFADeviceResponse' | |
Instances
| Eq DeleteVirtualMFADeviceResponse Source # | |
Defined in Amazonka.IAM.DeleteVirtualMFADevice | |
| Read DeleteVirtualMFADeviceResponse Source # | |
| Show DeleteVirtualMFADeviceResponse Source # | |
Defined in Amazonka.IAM.DeleteVirtualMFADevice Methods showsPrec :: Int -> DeleteVirtualMFADeviceResponse -> ShowS # show :: DeleteVirtualMFADeviceResponse -> String # showList :: [DeleteVirtualMFADeviceResponse] -> ShowS # | |
| Generic DeleteVirtualMFADeviceResponse Source # | |
Defined in Amazonka.IAM.DeleteVirtualMFADevice Associated Types type Rep DeleteVirtualMFADeviceResponse :: Type -> Type # | |
| NFData DeleteVirtualMFADeviceResponse Source # | |
Defined in Amazonka.IAM.DeleteVirtualMFADevice Methods rnf :: DeleteVirtualMFADeviceResponse -> () # | |
| type Rep DeleteVirtualMFADeviceResponse Source # | |
Defined in Amazonka.IAM.DeleteVirtualMFADevice | |
newDeleteVirtualMFADeviceResponse :: DeleteVirtualMFADeviceResponse Source #
Create a value of DeleteVirtualMFADeviceResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
ListRoles (Paginated)
See: newListRoles smart constructor.
Instances
newListRoles :: ListRoles Source #
Create a value of ListRoles with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:pathPrefix:ListRoles', listRoles_pathPrefix - The path prefix for filtering the results. For example, the prefix
/application_abc/component_xyz/ gets all roles whose path starts
with /application_abc/component_xyz/.
This parameter is optional. If it is not included, it defaults to a
slash (/), listing all roles. This parameter allows (through its
regex pattern) a string of characters
consisting of either a forward slash (/) by itself or a string that
must begin and end with forward slashes. In addition, it can contain any
ASCII character from the ! (\u0021) through the DEL character
(\u007F), including most punctuation characters, digits, and upper
and lowercased letters.
$sel:marker:ListRoles', listRoles_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListRoles', listRoles_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
data ListRolesResponse Source #
Contains the response to a successful ListRoles request.
See: newListRolesResponse smart constructor.
Instances
Arguments
| :: Int | |
| -> ListRolesResponse |
Create a value of ListRolesResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListRoles', listRolesResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListRolesResponse', listRolesResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListRolesResponse', listRolesResponse_httpStatus - The response's http status code.
$sel:roles:ListRolesResponse', listRolesResponse_roles - A list of roles.
ListUserPolicies (Paginated)
data ListUserPolicies Source #
See: newListUserPolicies smart constructor.
Instances
Arguments
| :: Text | |
| -> ListUserPolicies |
Create a value of ListUserPolicies with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListUserPolicies', listUserPolicies_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListUserPolicies', listUserPolicies_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:userName:ListUserPolicies', listUserPolicies_userName - The name of the user to list policies for.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data ListUserPoliciesResponse Source #
Contains the response to a successful ListUserPolicies request.
See: newListUserPoliciesResponse smart constructor.
Instances
newListUserPoliciesResponse Source #
Create a value of ListUserPoliciesResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListUserPolicies', listUserPoliciesResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListUserPoliciesResponse', listUserPoliciesResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListUserPoliciesResponse', listUserPoliciesResponse_httpStatus - The response's http status code.
$sel:policyNames:ListUserPoliciesResponse', listUserPoliciesResponse_policyNames - A list of policy names.
ListOpenIDConnectProviderTags
data ListOpenIDConnectProviderTags Source #
See: newListOpenIDConnectProviderTags smart constructor.
Instances
newListOpenIDConnectProviderTags Source #
Arguments
| :: Text |
|
| -> ListOpenIDConnectProviderTags |
Create a value of ListOpenIDConnectProviderTags with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListOpenIDConnectProviderTags', listOpenIDConnectProviderTags_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListOpenIDConnectProviderTags', listOpenIDConnectProviderTags_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:openIDConnectProviderArn:ListOpenIDConnectProviderTags', listOpenIDConnectProviderTags_openIDConnectProviderArn - The ARN of the OpenID Connect (OIDC) identity provider whose tags you
want to see.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data ListOpenIDConnectProviderTagsResponse Source #
See: newListOpenIDConnectProviderTagsResponse smart constructor.
Instances
newListOpenIDConnectProviderTagsResponse Source #
Arguments
| :: Int | |
| -> ListOpenIDConnectProviderTagsResponse |
Create a value of ListOpenIDConnectProviderTagsResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListOpenIDConnectProviderTags', listOpenIDConnectProviderTagsResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListOpenIDConnectProviderTagsResponse', listOpenIDConnectProviderTagsResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListOpenIDConnectProviderTagsResponse', listOpenIDConnectProviderTagsResponse_httpStatus - The response's http status code.
$sel:tags:ListOpenIDConnectProviderTagsResponse', listOpenIDConnectProviderTagsResponse_tags - The list of tags that are currently attached to the OpenID Connect
(OIDC) identity provider. Each tag consists of a key name and an
associated value. If no tags are attached to the specified resource, the
response contains an empty list.
PutRolePermissionsBoundary
data PutRolePermissionsBoundary Source #
See: newPutRolePermissionsBoundary smart constructor.
Constructors
| PutRolePermissionsBoundary' Text Text |
Instances
newPutRolePermissionsBoundary Source #
Arguments
| :: Text | |
| -> Text | |
| -> PutRolePermissionsBoundary |
Create a value of PutRolePermissionsBoundary with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:roleName:PutRolePermissionsBoundary', putRolePermissionsBoundary_roleName - The name (friendly name, not ARN) of the IAM role for which you want to
set the permissions boundary.
$sel:permissionsBoundary:PutRolePermissionsBoundary', putRolePermissionsBoundary_permissionsBoundary - The ARN of the policy that is used to set the permissions boundary for
the role.
data PutRolePermissionsBoundaryResponse Source #
See: newPutRolePermissionsBoundaryResponse smart constructor.
Constructors
| PutRolePermissionsBoundaryResponse' | |
Instances
| Eq PutRolePermissionsBoundaryResponse Source # | |
| Read PutRolePermissionsBoundaryResponse Source # | |
| Show PutRolePermissionsBoundaryResponse Source # | |
Defined in Amazonka.IAM.PutRolePermissionsBoundary Methods showsPrec :: Int -> PutRolePermissionsBoundaryResponse -> ShowS # | |
| Generic PutRolePermissionsBoundaryResponse Source # | |
Defined in Amazonka.IAM.PutRolePermissionsBoundary Associated Types type Rep PutRolePermissionsBoundaryResponse :: Type -> Type # | |
| NFData PutRolePermissionsBoundaryResponse Source # | |
Defined in Amazonka.IAM.PutRolePermissionsBoundary Methods rnf :: PutRolePermissionsBoundaryResponse -> () # | |
| type Rep PutRolePermissionsBoundaryResponse Source # | |
Defined in Amazonka.IAM.PutRolePermissionsBoundary | |
newPutRolePermissionsBoundaryResponse :: PutRolePermissionsBoundaryResponse Source #
Create a value of PutRolePermissionsBoundaryResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
UploadSSHPublicKey
data UploadSSHPublicKey Source #
See: newUploadSSHPublicKey smart constructor.
Constructors
| UploadSSHPublicKey' Text Text |
Instances
newUploadSSHPublicKey Source #
Arguments
| :: Text | |
| -> Text | |
| -> UploadSSHPublicKey |
Create a value of UploadSSHPublicKey with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:UploadSSHPublicKey', uploadSSHPublicKey_userName - The name of the IAM user to associate the SSH public key with.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:sSHPublicKeyBody:UploadSSHPublicKey', uploadSSHPublicKey_sSHPublicKeyBody - The SSH public key. The public key must be encoded in ssh-rsa format or
PEM format. The minimum bit-length of the public key is 2048 bits. For
example, you can generate a 2048-bit key, and the resulting PEM file is
1679 bytes long.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
data UploadSSHPublicKeyResponse Source #
Contains the response to a successful UploadSSHPublicKey request.
See: newUploadSSHPublicKeyResponse smart constructor.
Constructors
| UploadSSHPublicKeyResponse' (Maybe SSHPublicKey) Int |
Instances
newUploadSSHPublicKeyResponse Source #
Create a value of UploadSSHPublicKeyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:sSHPublicKey:UploadSSHPublicKeyResponse', uploadSSHPublicKeyResponse_sSHPublicKey - Contains information about the SSH public key.
$sel:httpStatus:UploadSSHPublicKeyResponse', uploadSSHPublicKeyResponse_httpStatus - The response's http status code.
DeleteRolePermissionsBoundary
data DeleteRolePermissionsBoundary Source #
See: newDeleteRolePermissionsBoundary smart constructor.
Constructors
| DeleteRolePermissionsBoundary' Text |
Instances
newDeleteRolePermissionsBoundary Source #
Create a value of DeleteRolePermissionsBoundary with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:roleName:DeleteRolePermissionsBoundary', deleteRolePermissionsBoundary_roleName - The name (friendly name, not ARN) of the IAM role from which you want to
remove the permissions boundary.
data DeleteRolePermissionsBoundaryResponse Source #
See: newDeleteRolePermissionsBoundaryResponse smart constructor.
Constructors
| DeleteRolePermissionsBoundaryResponse' | |
Instances
newDeleteRolePermissionsBoundaryResponse :: DeleteRolePermissionsBoundaryResponse Source #
Create a value of DeleteRolePermissionsBoundaryResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
SimulateCustomPolicy (Paginated)
data SimulateCustomPolicy Source #
See: newSimulateCustomPolicy smart constructor.
Constructors
| SimulateCustomPolicy' (Maybe Text) (Maybe Text) (Maybe Text) (Maybe [Text]) (Maybe [Text]) (Maybe Text) (Maybe Natural) (Maybe [ContextEntry]) (Maybe Text) [Text] [Text] |
Instances
newSimulateCustomPolicy :: SimulateCustomPolicy Source #
Create a value of SimulateCustomPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:resourcePolicy:SimulateCustomPolicy', simulateCustomPolicy_resourcePolicy - A resource-based policy to include in the simulation provided as a
string. Each resource in the simulation is treated as if it had this
policy attached. You can include only one resource-based policy in a
simulation.
The maximum length of the policy document that you can pass in this operation, including whitespace, is listed below. To view the maximum character counts of a managed policy with no whitespaces, see IAM and STS character quotas.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
$sel:callerArn:SimulateCustomPolicy', simulateCustomPolicy_callerArn - The ARN of the IAM user that you want to use as the simulated caller of
the API operations. CallerArn is required if you include a
ResourcePolicy so that the policy's Principal element has a value
to use in evaluating the policy.
You can specify only the ARN of an IAM user. You cannot specify the ARN of an assumed role, federated user, or a service principal.
$sel:resourceHandlingOption:SimulateCustomPolicy', simulateCustomPolicy_resourceHandlingOption - Specifies the type of simulation to run. Different API operations that
support resource-based policies require different combinations of
resources. By specifying the type of simulation to run, you enable the
policy simulator to enforce the presence of the required resources to
ensure reliable simulation results. If your simulation does not match
one of the following scenarios, then you can omit this parameter. The
following list shows each of the supported scenario values and the
resources that you must define to run the simulation.
Each of the EC2 scenarios requires that you specify instance, image, and security-group resources. If your scenario includes an EBS volume, then you must specify that volume as a resource. If the EC2 scenario includes VPC, then you must supply the network-interface resource. If it includes an IP subnet, then you must specify the subnet resource. For more information on the EC2 scenario options, see Supported platforms in the Amazon EC2 User Guide.
EC2-Classic-InstanceStore
instance, image, security-group
EC2-Classic-EBS
instance, image, security-group, volume
EC2-VPC-InstanceStore
instance, image, security-group, network-interface
EC2-VPC-InstanceStore-Subnet
instance, image, security-group, network-interface, subnet
EC2-VPC-EBS
instance, image, security-group, network-interface, volume
EC2-VPC-EBS-Subnet
instance, image, security-group, network-interface, subnet, volume
$sel:resourceArns:SimulateCustomPolicy', simulateCustomPolicy_resourceArns - A list of ARNs of Amazon Web Services resources to include in the
simulation. If this parameter is not provided, then the value defaults
to * (all resources). Each API in the ActionNames parameter is
evaluated for each resource in this list. The simulation determines the
access result (allowed or denied) of each combination and reports it in
the response. You can simulate resources that don't exist in your
account.
The simulation does not automatically retrieve policies for the
specified resources. If you want to include a resource policy in the
simulation, then you must include the policy as a string in the
ResourcePolicy parameter.
If you include a ResourcePolicy, then it must be applicable to all of
the resources included in the simulation or you receive an invalid input
error.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
$sel:permissionsBoundaryPolicyInputList:SimulateCustomPolicy', simulateCustomPolicy_permissionsBoundaryPolicyInputList - The IAM permissions boundary policy to simulate. The permissions
boundary sets the maximum permissions that an IAM entity can have. You
can input only one permissions boundary when you pass a policy to this
operation. For more information about permissions boundaries, see
Permissions boundaries for IAM entities
in the IAM User Guide. The policy input is specified as a string that
contains the complete, valid JSON text of a permissions boundary policy.
The maximum length of the policy document that you can pass in this operation, including whitespace, is listed below. To view the maximum character counts of a managed policy with no whitespaces, see IAM and STS character quotas.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
$sel:marker:SimulateCustomPolicy', simulateCustomPolicy_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:SimulateCustomPolicy', simulateCustomPolicy_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:contextEntries:SimulateCustomPolicy', simulateCustomPolicy_contextEntries - A list of context keys and corresponding values for the simulation to
use. Whenever a context key is evaluated in one of the simulated IAM
permissions policies, the corresponding value is supplied.
$sel:resourceOwner:SimulateCustomPolicy', simulateCustomPolicy_resourceOwner - An ARN representing the Amazon Web Services account ID that specifies
the owner of any simulated resource that does not identify its owner in
the resource ARN. Examples of resource ARNs include an S3 bucket or
object. If ResourceOwner is specified, it is also used as the account
owner of any ResourcePolicy included in the simulation. If the
ResourceOwner parameter is not specified, then the owner of the
resources and the resource policy defaults to the account of the
identity provided in CallerArn. This parameter is required only if you
specify a resource-based policy and account that owns the resource is
different from the account that owns the simulated calling user
CallerArn.
The ARN for an account uses the following syntax:
arn:aws:iam::AWS-account-ID:root. For example, to represent the
account with the 112233445566 ID, use the following ARN:
arn:aws:iam::112233445566-ID:root.
$sel:policyInputList:SimulateCustomPolicy', simulateCustomPolicy_policyInputList - A list of policy documents to include in the simulation. Each document
is specified as a string containing the complete, valid JSON text of an
IAM policy. Do not include any resource-based policies in this
parameter. Any resource-based policy must be submitted with the
ResourcePolicy parameter. The policies cannot be "scope-down"
policies, such as you could include in a call to
GetFederationToken
or one of the
AssumeRole
API operations. In other words, do not use policies designed to restrict
what a user can do while using the temporary credentials.
The maximum length of the policy document that you can pass in this operation, including whitespace, is listed below. To view the maximum character counts of a managed policy with no whitespaces, see IAM and STS character quotas.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
$sel:actionNames:SimulateCustomPolicy', simulateCustomPolicy_actionNames - A list of names of API operations to evaluate in the simulation. Each
operation is evaluated against each resource. Each operation must
include the service identifier, such as iam:CreateUser. This operation
does not support using wildcards (*) in an action name.
data SimulatePolicyResponse Source #
Contains the response to a successful SimulatePrincipalPolicy or SimulateCustomPolicy request.
See: newSimulatePolicyResponse smart constructor.
Constructors
| SimulatePolicyResponse' (Maybe [EvaluationResult]) (Maybe Text) (Maybe Bool) |
Instances
newSimulatePolicyResponse :: SimulatePolicyResponse Source #
Create a value of SimulatePolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:evaluationResults:SimulatePolicyResponse', simulatePolicyResponse_evaluationResults - The results of the simulation.
$sel:marker:SimulatePolicyResponse', simulatePolicyResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:SimulatePolicyResponse', simulatePolicyResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
UpdateRole
data UpdateRole Source #
See: newUpdateRole smart constructor.
Instances
Arguments
| :: Text | |
| -> UpdateRole |
Create a value of UpdateRole with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:maxSessionDuration:UpdateRole', updateRole_maxSessionDuration - The maximum session duration (in seconds) that you want to set for the
specified role. If you do not specify a value for this setting, the
default maximum of one hour is applied. This setting can have a value
from 1 hour to 12 hours.
Anyone who assumes the role from the CLI or API can use the
DurationSeconds API parameter or the duration-seconds CLI parameter
to request a longer session. The MaxSessionDuration setting determines
the maximum duration that can be requested using the DurationSeconds
parameter. If users don't specify a value for the DurationSeconds
parameter, their security credentials are valid for one hour by default.
This applies when you use the AssumeRole* API operations or the
assume-role* CLI operations but does not apply when you use those
operations to create a console URL. For more information, see
Using IAM roles
in the IAM User Guide.
$sel:description:UpdateRole', updateRole_description - The new description that you want to apply to the specified role.
$sel:roleName:UpdateRole', updateRole_roleName - The name of the role that you want to modify.
data UpdateRoleResponse Source #
See: newUpdateRoleResponse smart constructor.
Constructors
| UpdateRoleResponse' Int |
Instances
newUpdateRoleResponse Source #
Arguments
| :: Int | |
| -> UpdateRoleResponse |
Create a value of UpdateRoleResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:UpdateRoleResponse', updateRoleResponse_httpStatus - The response's http status code.
DeleteRole
data DeleteRole Source #
See: newDeleteRole smart constructor.
Constructors
| DeleteRole' Text |
Instances
Arguments
| :: Text | |
| -> DeleteRole |
Create a value of DeleteRole with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:roleName:DeleteRole', deleteRole_roleName - The name of the role to delete.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data DeleteRoleResponse Source #
See: newDeleteRoleResponse smart constructor.
Constructors
| DeleteRoleResponse' | |
Instances
| Eq DeleteRoleResponse Source # | |
Defined in Amazonka.IAM.DeleteRole Methods (==) :: DeleteRoleResponse -> DeleteRoleResponse -> Bool # (/=) :: DeleteRoleResponse -> DeleteRoleResponse -> Bool # | |
| Read DeleteRoleResponse Source # | |
Defined in Amazonka.IAM.DeleteRole Methods readsPrec :: Int -> ReadS DeleteRoleResponse # readList :: ReadS [DeleteRoleResponse] # | |
| Show DeleteRoleResponse Source # | |
Defined in Amazonka.IAM.DeleteRole Methods showsPrec :: Int -> DeleteRoleResponse -> ShowS # show :: DeleteRoleResponse -> String # showList :: [DeleteRoleResponse] -> ShowS # | |
| Generic DeleteRoleResponse Source # | |
Defined in Amazonka.IAM.DeleteRole Associated Types type Rep DeleteRoleResponse :: Type -> Type # Methods from :: DeleteRoleResponse -> Rep DeleteRoleResponse x # to :: Rep DeleteRoleResponse x -> DeleteRoleResponse # | |
| NFData DeleteRoleResponse Source # | |
Defined in Amazonka.IAM.DeleteRole Methods rnf :: DeleteRoleResponse -> () # | |
| type Rep DeleteRoleResponse Source # | |
newDeleteRoleResponse :: DeleteRoleResponse Source #
Create a value of DeleteRoleResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
ListUsers (Paginated)
See: newListUsers smart constructor.
Instances
newListUsers :: ListUsers Source #
Create a value of ListUsers with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:pathPrefix:ListUsers', listUsers_pathPrefix - The path prefix for filtering the results. For example:
/division_abc/subdivision_xyz/, which would get all user names
whose path starts with /division_abc/subdivision_xyz/.
This parameter is optional. If it is not included, it defaults to a
slash (/), listing all user names. This parameter allows (through its
regex pattern) a string of characters
consisting of either a forward slash (/) by itself or a string that
must begin and end with forward slashes. In addition, it can contain any
ASCII character from the ! (\u0021) through the DEL character
(\u007F), including most punctuation characters, digits, and upper
and lowercased letters.
$sel:marker:ListUsers', listUsers_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListUsers', listUsers_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
data ListUsersResponse Source #
Contains the response to a successful ListUsers request.
See: newListUsersResponse smart constructor.
Instances
Arguments
| :: Int | |
| -> ListUsersResponse |
Create a value of ListUsersResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListUsers', listUsersResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListUsersResponse', listUsersResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListUsersResponse', listUsersResponse_httpStatus - The response's http status code.
$sel:users:ListUsersResponse', listUsersResponse_users - A list of users.
UpdateOpenIDConnectProviderThumbprint
data UpdateOpenIDConnectProviderThumbprint Source #
See: newUpdateOpenIDConnectProviderThumbprint smart constructor.
Constructors
| UpdateOpenIDConnectProviderThumbprint' Text [Text] |
Instances
newUpdateOpenIDConnectProviderThumbprint Source #
Arguments
| :: Text |
|
| -> UpdateOpenIDConnectProviderThumbprint |
Create a value of UpdateOpenIDConnectProviderThumbprint with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:openIDConnectProviderArn:UpdateOpenIDConnectProviderThumbprint', updateOpenIDConnectProviderThumbprint_openIDConnectProviderArn - The Amazon Resource Name (ARN) of the IAM OIDC provider resource object
for which you want to update the thumbprint. You can get a list of OIDC
provider ARNs by using the ListOpenIDConnectProviders operation.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
$sel:thumbprintList:UpdateOpenIDConnectProviderThumbprint', updateOpenIDConnectProviderThumbprint_thumbprintList - A list of certificate thumbprints that are associated with the specified
IAM OpenID Connect provider. For more information, see
CreateOpenIDConnectProvider.
data UpdateOpenIDConnectProviderThumbprintResponse Source #
See: newUpdateOpenIDConnectProviderThumbprintResponse smart constructor.
Constructors
| UpdateOpenIDConnectProviderThumbprintResponse' | |
Instances
newUpdateOpenIDConnectProviderThumbprintResponse :: UpdateOpenIDConnectProviderThumbprintResponse Source #
Create a value of UpdateOpenIDConnectProviderThumbprintResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
PutUserPolicy
data PutUserPolicy Source #
See: newPutUserPolicy smart constructor.
Constructors
| PutUserPolicy' Text Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> Text | |
| -> PutUserPolicy |
Create a value of PutUserPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:PutUserPolicy', putUserPolicy_userName - The name of the user to associate the policy with.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyName:PutUserPolicy', putUserPolicy_policyName - The name of the policy document.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyDocument:PutUserPolicy', putUserPolicy_policyDocument - The policy document.
You must provide policies in JSON format in IAM. However, for CloudFormation templates formatted in YAML, you can provide the policy in JSON or YAML format. CloudFormation always converts a YAML policy to JSON format before submitting it to IAM.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
data PutUserPolicyResponse Source #
See: newPutUserPolicyResponse smart constructor.
Constructors
| PutUserPolicyResponse' | |
Instances
newPutUserPolicyResponse :: PutUserPolicyResponse Source #
Create a value of PutUserPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
TagMFADevice
data TagMFADevice Source #
See: newTagMFADevice smart constructor.
Constructors
| TagMFADevice' Text [Tag] |
Instances
Arguments
| :: Text | |
| -> TagMFADevice |
Create a value of TagMFADevice with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:serialNumber:TagMFADevice', tagMFADevice_serialNumber - The unique identifier for the IAM virtual MFA device to which you want
to add tags. For virtual MFA devices, the serial number is the same as
the ARN.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:tags:TagMFADevice', tagMFADevice_tags - The list of tags that you want to attach to the IAM virtual MFA device.
Each tag consists of a key name and an associated value.
data TagMFADeviceResponse Source #
See: newTagMFADeviceResponse smart constructor.
Constructors
| TagMFADeviceResponse' | |
Instances
newTagMFADeviceResponse :: TagMFADeviceResponse Source #
Create a value of TagMFADeviceResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
GetSSHPublicKey
data GetSSHPublicKey Source #
See: newGetSSHPublicKey smart constructor.
Constructors
| GetSSHPublicKey' Text Text EncodingType |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> EncodingType | |
| -> GetSSHPublicKey |
Create a value of GetSSHPublicKey with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:GetSSHPublicKey', getSSHPublicKey_userName - The name of the IAM user associated with the SSH public key.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:sSHPublicKeyId:GetSSHPublicKey', getSSHPublicKey_sSHPublicKeyId - The unique identifier for the SSH public key.
This parameter allows (through its regex pattern) a string of characters that can consist of any upper or lowercased letter or digit.
$sel:encoding:GetSSHPublicKey', getSSHPublicKey_encoding - Specifies the public key encoding format to use in the response. To
retrieve the public key in ssh-rsa format, use SSH. To retrieve the
public key in PEM format, use PEM.
data GetSSHPublicKeyResponse Source #
Contains the response to a successful GetSSHPublicKey request.
See: newGetSSHPublicKeyResponse smart constructor.
Constructors
| GetSSHPublicKeyResponse' (Maybe SSHPublicKey) Int |
Instances
newGetSSHPublicKeyResponse Source #
Create a value of GetSSHPublicKeyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:sSHPublicKey:GetSSHPublicKeyResponse', getSSHPublicKeyResponse_sSHPublicKey - A structure containing details about the SSH public key.
$sel:httpStatus:GetSSHPublicKeyResponse', getSSHPublicKeyResponse_httpStatus - The response's http status code.
UntagUser
See: newUntagUser smart constructor.
Constructors
| UntagUser' Text [Text] |
Instances
Create a value of UntagUser with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:UntagUser', untagUser_userName - The name of the IAM user from which you want to remove tags.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:tagKeys:UntagUser', untagUser_tagKeys - A list of key names as a simple array of strings. The tags with matching
keys are removed from the specified user.
data UntagUserResponse Source #
See: newUntagUserResponse smart constructor.
Constructors
| UntagUserResponse' | |
Instances
| Eq UntagUserResponse Source # | |
Defined in Amazonka.IAM.UntagUser Methods (==) :: UntagUserResponse -> UntagUserResponse -> Bool # (/=) :: UntagUserResponse -> UntagUserResponse -> Bool # | |
| Read UntagUserResponse Source # | |
Defined in Amazonka.IAM.UntagUser Methods readsPrec :: Int -> ReadS UntagUserResponse # readList :: ReadS [UntagUserResponse] # | |
| Show UntagUserResponse Source # | |
Defined in Amazonka.IAM.UntagUser Methods showsPrec :: Int -> UntagUserResponse -> ShowS # show :: UntagUserResponse -> String # showList :: [UntagUserResponse] -> ShowS # | |
| Generic UntagUserResponse Source # | |
Defined in Amazonka.IAM.UntagUser Associated Types type Rep UntagUserResponse :: Type -> Type # Methods from :: UntagUserResponse -> Rep UntagUserResponse x # to :: Rep UntagUserResponse x -> UntagUserResponse # | |
| NFData UntagUserResponse Source # | |
Defined in Amazonka.IAM.UntagUser Methods rnf :: UntagUserResponse -> () # | |
| type Rep UntagUserResponse Source # | |
newUntagUserResponse :: UntagUserResponse Source #
Create a value of UntagUserResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
DetachGroupPolicy
data DetachGroupPolicy Source #
See: newDetachGroupPolicy smart constructor.
Constructors
| DetachGroupPolicy' Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> DetachGroupPolicy |
Create a value of DetachGroupPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:groupName:DetachGroupPolicy', detachGroupPolicy_groupName - The name (friendly name, not ARN) of the IAM group to detach the policy
from.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyArn:DetachGroupPolicy', detachGroupPolicy_policyArn - The Amazon Resource Name (ARN) of the IAM policy you want to detach.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
data DetachGroupPolicyResponse Source #
See: newDetachGroupPolicyResponse smart constructor.
Constructors
| DetachGroupPolicyResponse' | |
Instances
newDetachGroupPolicyResponse :: DetachGroupPolicyResponse Source #
Create a value of DetachGroupPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
TagInstanceProfile
data TagInstanceProfile Source #
See: newTagInstanceProfile smart constructor.
Constructors
| TagInstanceProfile' Text [Tag] |
Instances
newTagInstanceProfile Source #
Create a value of TagInstanceProfile with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:instanceProfileName:TagInstanceProfile', tagInstanceProfile_instanceProfileName - The name of the IAM instance profile to which you want to add tags.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:tags:TagInstanceProfile', tagInstanceProfile_tags - The list of tags that you want to attach to the IAM instance profile.
Each tag consists of a key name and an associated value.
data TagInstanceProfileResponse Source #
See: newTagInstanceProfileResponse smart constructor.
Constructors
| TagInstanceProfileResponse' | |
Instances
newTagInstanceProfileResponse :: TagInstanceProfileResponse Source #
Create a value of TagInstanceProfileResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
GetOpenIDConnectProvider
data GetOpenIDConnectProvider Source #
See: newGetOpenIDConnectProvider smart constructor.
Constructors
| GetOpenIDConnectProvider' Text |
Instances
newGetOpenIDConnectProvider Source #
Create a value of GetOpenIDConnectProvider with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:openIDConnectProviderArn:GetOpenIDConnectProvider', getOpenIDConnectProvider_openIDConnectProviderArn - The Amazon Resource Name (ARN) of the OIDC provider resource object in
IAM to get information for. You can get a list of OIDC provider resource
ARNs by using the ListOpenIDConnectProviders operation.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
data GetOpenIDConnectProviderResponse Source #
Contains the response to a successful GetOpenIDConnectProvider request.
See: newGetOpenIDConnectProviderResponse smart constructor.
Constructors
| GetOpenIDConnectProviderResponse' (Maybe ISO8601) (Maybe Text) (Maybe [Text]) (Maybe [Text]) (Maybe [Tag]) Int |
Instances
newGetOpenIDConnectProviderResponse Source #
Create a value of GetOpenIDConnectProviderResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:createDate:GetOpenIDConnectProviderResponse', getOpenIDConnectProviderResponse_createDate - The date and time when the IAM OIDC provider resource object was created
in the Amazon Web Services account.
$sel:url:GetOpenIDConnectProviderResponse', getOpenIDConnectProviderResponse_url - The URL that the IAM OIDC provider resource object is associated with.
For more information, see CreateOpenIDConnectProvider.
$sel:thumbprintList:GetOpenIDConnectProviderResponse', getOpenIDConnectProviderResponse_thumbprintList - A list of certificate thumbprints that are associated with the specified
IAM OIDC provider resource object. For more information, see
CreateOpenIDConnectProvider.
$sel:clientIDList:GetOpenIDConnectProviderResponse', getOpenIDConnectProviderResponse_clientIDList - A list of client IDs (also known as audiences) that are associated with
the specified IAM OIDC provider resource object. For more information,
see CreateOpenIDConnectProvider.
$sel:tags:GetOpenIDConnectProviderResponse', getOpenIDConnectProviderResponse_tags - A list of tags that are attached to the specified IAM OIDC provider. The
returned list of tags is sorted by tag key. For more information about
tagging, see
Tagging IAM resources
in the IAM User Guide.
$sel:httpStatus:GetOpenIDConnectProviderResponse', getOpenIDConnectProviderResponse_httpStatus - The response's http status code.
PutUserPermissionsBoundary
data PutUserPermissionsBoundary Source #
See: newPutUserPermissionsBoundary smart constructor.
Constructors
| PutUserPermissionsBoundary' Text Text |
Instances
newPutUserPermissionsBoundary Source #
Arguments
| :: Text | |
| -> Text | |
| -> PutUserPermissionsBoundary |
Create a value of PutUserPermissionsBoundary with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:PutUserPermissionsBoundary', putUserPermissionsBoundary_userName - The name (friendly name, not ARN) of the IAM user for which you want to
set the permissions boundary.
$sel:permissionsBoundary:PutUserPermissionsBoundary', putUserPermissionsBoundary_permissionsBoundary - The ARN of the policy that is used to set the permissions boundary for
the user.
data PutUserPermissionsBoundaryResponse Source #
See: newPutUserPermissionsBoundaryResponse smart constructor.
Constructors
| PutUserPermissionsBoundaryResponse' | |
Instances
| Eq PutUserPermissionsBoundaryResponse Source # | |
| Read PutUserPermissionsBoundaryResponse Source # | |
| Show PutUserPermissionsBoundaryResponse Source # | |
Defined in Amazonka.IAM.PutUserPermissionsBoundary Methods showsPrec :: Int -> PutUserPermissionsBoundaryResponse -> ShowS # | |
| Generic PutUserPermissionsBoundaryResponse Source # | |
Defined in Amazonka.IAM.PutUserPermissionsBoundary Associated Types type Rep PutUserPermissionsBoundaryResponse :: Type -> Type # | |
| NFData PutUserPermissionsBoundaryResponse Source # | |
Defined in Amazonka.IAM.PutUserPermissionsBoundary Methods rnf :: PutUserPermissionsBoundaryResponse -> () # | |
| type Rep PutUserPermissionsBoundaryResponse Source # | |
Defined in Amazonka.IAM.PutUserPermissionsBoundary | |
newPutUserPermissionsBoundaryResponse :: PutUserPermissionsBoundaryResponse Source #
Create a value of PutUserPermissionsBoundaryResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
DeleteUserPolicy
data DeleteUserPolicy Source #
See: newDeleteUserPolicy smart constructor.
Constructors
| DeleteUserPolicy' Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> DeleteUserPolicy |
Create a value of DeleteUserPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:DeleteUserPolicy', deleteUserPolicy_userName - The name (friendly name, not ARN) identifying the user that the policy
is embedded in.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyName:DeleteUserPolicy', deleteUserPolicy_policyName - The name identifying the policy document to delete.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data DeleteUserPolicyResponse Source #
See: newDeleteUserPolicyResponse smart constructor.
Constructors
| DeleteUserPolicyResponse' | |
Instances
newDeleteUserPolicyResponse :: DeleteUserPolicyResponse Source #
Create a value of DeleteUserPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
TagSAMLProvider
data TagSAMLProvider Source #
See: newTagSAMLProvider smart constructor.
Constructors
| TagSAMLProvider' Text [Tag] |
Instances
Arguments
| :: Text | |
| -> TagSAMLProvider |
Create a value of TagSAMLProvider with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:sAMLProviderArn:TagSAMLProvider', tagSAMLProvider_sAMLProviderArn - The ARN of the SAML identity provider in IAM to which you want to add
tags.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:tags:TagSAMLProvider', tagSAMLProvider_tags - The list of tags that you want to attach to the SAML identity provider
in IAM. Each tag consists of a key name and an associated value.
data TagSAMLProviderResponse Source #
See: newTagSAMLProviderResponse smart constructor.
Constructors
| TagSAMLProviderResponse' | |
Instances
| Eq TagSAMLProviderResponse Source # | |
Defined in Amazonka.IAM.TagSAMLProvider Methods (==) :: TagSAMLProviderResponse -> TagSAMLProviderResponse -> Bool # (/=) :: TagSAMLProviderResponse -> TagSAMLProviderResponse -> Bool # | |
| Read TagSAMLProviderResponse Source # | |
Defined in Amazonka.IAM.TagSAMLProvider | |
| Show TagSAMLProviderResponse Source # | |
Defined in Amazonka.IAM.TagSAMLProvider Methods showsPrec :: Int -> TagSAMLProviderResponse -> ShowS # show :: TagSAMLProviderResponse -> String # showList :: [TagSAMLProviderResponse] -> ShowS # | |
| Generic TagSAMLProviderResponse Source # | |
Defined in Amazonka.IAM.TagSAMLProvider Associated Types type Rep TagSAMLProviderResponse :: Type -> Type # Methods from :: TagSAMLProviderResponse -> Rep TagSAMLProviderResponse x # to :: Rep TagSAMLProviderResponse x -> TagSAMLProviderResponse # | |
| NFData TagSAMLProviderResponse Source # | |
Defined in Amazonka.IAM.TagSAMLProvider Methods rnf :: TagSAMLProviderResponse -> () # | |
| type Rep TagSAMLProviderResponse Source # | |
newTagSAMLProviderResponse :: TagSAMLProviderResponse Source #
Create a value of TagSAMLProviderResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
DeleteUserPermissionsBoundary
data DeleteUserPermissionsBoundary Source #
See: newDeleteUserPermissionsBoundary smart constructor.
Constructors
| DeleteUserPermissionsBoundary' Text |
Instances
newDeleteUserPermissionsBoundary Source #
Create a value of DeleteUserPermissionsBoundary with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:DeleteUserPermissionsBoundary', deleteUserPermissionsBoundary_userName - The name (friendly name, not ARN) of the IAM user from which you want to
remove the permissions boundary.
data DeleteUserPermissionsBoundaryResponse Source #
See: newDeleteUserPermissionsBoundaryResponse smart constructor.
Constructors
| DeleteUserPermissionsBoundaryResponse' | |
Instances
newDeleteUserPermissionsBoundaryResponse :: DeleteUserPermissionsBoundaryResponse Source #
Create a value of DeleteUserPermissionsBoundaryResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
CreateRole
data CreateRole Source #
See: newCreateRole smart constructor.
Constructors
| CreateRole' (Maybe Natural) (Maybe Text) (Maybe Text) (Maybe Text) (Maybe [Tag]) Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> CreateRole |
Create a value of CreateRole with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:maxSessionDuration:CreateRole', createRole_maxSessionDuration - The maximum session duration (in seconds) that you want to set for the
specified role. If you do not specify a value for this setting, the
default maximum of one hour is applied. This setting can have a value
from 1 hour to 12 hours.
Anyone who assumes the role from the or API can use the
DurationSeconds API parameter or the duration-seconds CLI parameter
to request a longer session. The MaxSessionDuration setting determines
the maximum duration that can be requested using the DurationSeconds
parameter. If users don't specify a value for the DurationSeconds
parameter, their security credentials are valid for one hour by default.
This applies when you use the AssumeRole* API operations or the
assume-role* CLI operations but does not apply when you use those
operations to create a console URL. For more information, see
Using IAM roles
in the IAM User Guide.
$sel:path:CreateRole', createRole_path - The path to the role. For more information about paths, see
IAM Identifiers
in the IAM User Guide.
This parameter is optional. If it is not included, it defaults to a slash (/).
This parameter allows (through its
regex pattern) a string of characters
consisting of either a forward slash (/) by itself or a string that
must begin and end with forward slashes. In addition, it can contain any
ASCII character from the ! (\u0021) through the DEL character
(\u007F), including most punctuation characters, digits, and upper
and lowercased letters.
$sel:permissionsBoundary:CreateRole', createRole_permissionsBoundary - The ARN of the policy that is used to set the permissions boundary for
the role.
$sel:description:CreateRole', createRole_description - A description of the role.
$sel:tags:CreateRole', createRole_tags - A list of tags that you want to attach to the new role. Each tag
consists of a key name and an associated value. For more information
about tagging, see
Tagging IAM resources
in the IAM User Guide.
If any one of the tags is invalid or if you exceed the allowed maximum number of tags, then the entire request fails and the resource is not created.
$sel:roleName:CreateRole', createRole_roleName - The name of the role to create.
IAM user, group, role, and policy names must be unique within the account. Names are not distinguished by case. For example, you cannot create resources named both "MyResource" and "myresource".
$sel:assumeRolePolicyDocument:CreateRole', createRole_assumeRolePolicyDocument - The trust relationship policy document that grants an entity permission
to assume the role.
In IAM, you must provide a JSON policy that has been converted to a string. However, for CloudFormation templates formatted in YAML, you can provide the policy in JSON or YAML format. CloudFormation always converts a YAML policy to JSON format before submitting it to IAM.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
Upon success, the response includes the same trust policy in JSON format.
data CreateRoleResponse Source #
Contains the response to a successful CreateRole request.
See: newCreateRoleResponse smart constructor.
Constructors
| CreateRoleResponse' Int Role |
Instances
newCreateRoleResponse Source #
Arguments
| :: Int | |
| -> Role | |
| -> CreateRoleResponse |
Create a value of CreateRoleResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:CreateRoleResponse', createRoleResponse_httpStatus - The response's http status code.
$sel:role':CreateRoleResponse', createRoleResponse_role - A structure containing details about the new role.
ResetServiceSpecificCredential
data ResetServiceSpecificCredential Source #
See: newResetServiceSpecificCredential smart constructor.
Constructors
| ResetServiceSpecificCredential' (Maybe Text) Text |
Instances
newResetServiceSpecificCredential Source #
Arguments
| :: Text |
|
| -> ResetServiceSpecificCredential |
Create a value of ResetServiceSpecificCredential with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:ResetServiceSpecificCredential', resetServiceSpecificCredential_userName - The name of the IAM user associated with the service-specific
credential. If this value is not specified, then the operation assumes
the user whose credentials are used to call the operation.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:serviceSpecificCredentialId:ResetServiceSpecificCredential', resetServiceSpecificCredential_serviceSpecificCredentialId - The unique identifier of the service-specific credential.
This parameter allows (through its regex pattern) a string of characters that can consist of any upper or lowercased letter or digit.
data ResetServiceSpecificCredentialResponse Source #
See: newResetServiceSpecificCredentialResponse smart constructor.
Instances
newResetServiceSpecificCredentialResponse Source #
Arguments
| :: Int | |
| -> ResetServiceSpecificCredentialResponse |
Create a value of ResetServiceSpecificCredentialResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:serviceSpecificCredential:ResetServiceSpecificCredentialResponse', resetServiceSpecificCredentialResponse_serviceSpecificCredential - A structure with details about the updated service-specific credential,
including the new password.
This is the only time that you can access the password. You cannot recover the password later, but you can reset it again.
$sel:httpStatus:ResetServiceSpecificCredentialResponse', resetServiceSpecificCredentialResponse_httpStatus - The response's http status code.
UntagSAMLProvider
data UntagSAMLProvider Source #
See: newUntagSAMLProvider smart constructor.
Constructors
| UntagSAMLProvider' Text [Text] |
Instances
Arguments
| :: Text | |
| -> UntagSAMLProvider |
Create a value of UntagSAMLProvider with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:sAMLProviderArn:UntagSAMLProvider', untagSAMLProvider_sAMLProviderArn - The ARN of the SAML identity provider in IAM from which you want to
remove tags.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:tagKeys:UntagSAMLProvider', untagSAMLProvider_tagKeys - A list of key names as a simple array of strings. The tags with matching
keys are removed from the specified SAML identity provider.
data UntagSAMLProviderResponse Source #
See: newUntagSAMLProviderResponse smart constructor.
Constructors
| UntagSAMLProviderResponse' | |
Instances
newUntagSAMLProviderResponse :: UntagSAMLProviderResponse Source #
Create a value of UntagSAMLProviderResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
GetCredentialReport
data GetCredentialReport Source #
See: newGetCredentialReport smart constructor.
Constructors
| GetCredentialReport' | |
Instances
newGetCredentialReport :: GetCredentialReport Source #
Create a value of GetCredentialReport with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
data GetCredentialReportResponse Source #
Contains the response to a successful GetCredentialReport request.
See: newGetCredentialReportResponse smart constructor.
Constructors
| GetCredentialReportResponse' (Maybe Base64) (Maybe ISO8601) (Maybe ReportFormatType) Int |
Instances
newGetCredentialReportResponse Source #
Create a value of GetCredentialReportResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:content:GetCredentialReportResponse', getCredentialReportResponse_content - Contains the credential report. The report is Base64-encoded.--
-- Note: This Lens automatically encodes and decodes Base64 data.
-- The underlying isomorphism will encode to Base64 representation during
-- serialisation, and decode from Base64 representation during deserialisation.
-- This Lens accepts and returns only raw unencoded data.
$sel:generatedTime:GetCredentialReportResponse', getCredentialReportResponse_generatedTime - The date and time when the credential report was created, in
ISO 8601 date-time format.
$sel:reportFormat:GetCredentialReportResponse', getCredentialReportResponse_reportFormat - The format (MIME type) of the credential report.
$sel:httpStatus:GetCredentialReportResponse', getCredentialReportResponse_httpStatus - The response's http status code.
ListServerCertificateTags
data ListServerCertificateTags Source #
See: newListServerCertificateTags smart constructor.
Instances
newListServerCertificateTags Source #
Create a value of ListServerCertificateTags with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListServerCertificateTags', listServerCertificateTags_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListServerCertificateTags', listServerCertificateTags_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:serverCertificateName:ListServerCertificateTags', listServerCertificateTags_serverCertificateName - The name of the IAM server certificate whose tags you want to see.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data ListServerCertificateTagsResponse Source #
See: newListServerCertificateTagsResponse smart constructor.
Instances
newListServerCertificateTagsResponse Source #
Arguments
| :: Int | |
| -> ListServerCertificateTagsResponse |
Create a value of ListServerCertificateTagsResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListServerCertificateTags', listServerCertificateTagsResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListServerCertificateTagsResponse', listServerCertificateTagsResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListServerCertificateTagsResponse', listServerCertificateTagsResponse_httpStatus - The response's http status code.
$sel:tags:ListServerCertificateTagsResponse', listServerCertificateTagsResponse_tags - The list of tags that are currently attached to the IAM server
certificate. Each tag consists of a key name and an associated value. If
no tags are attached to the specified resource, the response contains an
empty list.
GetAccountSummary
data GetAccountSummary Source #
See: newGetAccountSummary smart constructor.
Constructors
| GetAccountSummary' | |
Instances
newGetAccountSummary :: GetAccountSummary Source #
Create a value of GetAccountSummary with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
data GetAccountSummaryResponse Source #
Contains the response to a successful GetAccountSummary request.
See: newGetAccountSummaryResponse smart constructor.
Constructors
| GetAccountSummaryResponse' (Maybe (HashMap SummaryKeyType Int)) Int |
Instances
newGetAccountSummaryResponse Source #
Create a value of GetAccountSummaryResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:summaryMap:GetAccountSummaryResponse', getAccountSummaryResponse_summaryMap - A set of key–value pairs containing information about IAM entity usage
and IAM quotas.
$sel:httpStatus:GetAccountSummaryResponse', getAccountSummaryResponse_httpStatus - The response's http status code.
GenerateServiceLastAccessedDetails
data GenerateServiceLastAccessedDetails Source #
See: newGenerateServiceLastAccessedDetails smart constructor.
Instances
newGenerateServiceLastAccessedDetails Source #
Create a value of GenerateServiceLastAccessedDetails with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:granularity:GenerateServiceLastAccessedDetails', generateServiceLastAccessedDetails_granularity - The level of detail that you want to generate. You can specify whether
you want to generate information about the last attempt to access
services or actions. If you specify service-level granularity, this
operation generates only service data. If you specify action-level
granularity, it generates service and action data. If you don't include
this optional parameter, the operation generates service data.
$sel:arn:GenerateServiceLastAccessedDetails', generateServiceLastAccessedDetails_arn - The ARN of the IAM resource (user, group, role, or managed policy) used
to generate information about when the resource was last used in an
attempt to access an Amazon Web Services service.
data GenerateServiceLastAccessedDetailsResponse Source #
See: newGenerateServiceLastAccessedDetailsResponse smart constructor.
Constructors
| GenerateServiceLastAccessedDetailsResponse' (Maybe Text) Int |
Instances
newGenerateServiceLastAccessedDetailsResponse Source #
Arguments
| :: Int | |
| -> GenerateServiceLastAccessedDetailsResponse |
Create a value of GenerateServiceLastAccessedDetailsResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:jobId:GenerateServiceLastAccessedDetailsResponse', generateServiceLastAccessedDetailsResponse_jobId - The JobId that you can use in the GetServiceLastAccessedDetails or
GetServiceLastAccessedDetailsWithEntities operations. The JobId
returned by GenerateServiceLastAccessedDetail must be used by the same
role within a session, or by the same user when used to call
GetServiceLastAccessedDetail.
$sel:httpStatus:GenerateServiceLastAccessedDetailsResponse', generateServiceLastAccessedDetailsResponse_httpStatus - The response's http status code.
ListPolicyTags
data ListPolicyTags Source #
See: newListPolicyTags smart constructor.
Instances
Arguments
| :: Text | |
| -> ListPolicyTags |
Create a value of ListPolicyTags with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListPolicyTags', listPolicyTags_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListPolicyTags', listPolicyTags_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:policyArn:ListPolicyTags', listPolicyTags_policyArn - The ARN of the IAM customer managed policy whose tags you want to see.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data ListPolicyTagsResponse Source #
See: newListPolicyTagsResponse smart constructor.
Instances
newListPolicyTagsResponse Source #
Create a value of ListPolicyTagsResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListPolicyTags', listPolicyTagsResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListPolicyTagsResponse', listPolicyTagsResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListPolicyTagsResponse', listPolicyTagsResponse_httpStatus - The response's http status code.
$sel:tags:ListPolicyTagsResponse', listPolicyTagsResponse_tags - The list of tags that are currently attached to the IAM customer managed
policy. Each tag consists of a key name and an associated value. If no
tags are attached to the specified resource, the response contains an
empty list.
ListGroupPolicies (Paginated)
data ListGroupPolicies Source #
See: newListGroupPolicies smart constructor.
Instances
Arguments
| :: Text | |
| -> ListGroupPolicies |
Create a value of ListGroupPolicies with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListGroupPolicies', listGroupPolicies_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListGroupPolicies', listGroupPolicies_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:groupName:ListGroupPolicies', listGroupPolicies_groupName - The name of the group to list policies for.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data ListGroupPoliciesResponse Source #
Contains the response to a successful ListGroupPolicies request.
See: newListGroupPoliciesResponse smart constructor.
Instances
newListGroupPoliciesResponse Source #
Create a value of ListGroupPoliciesResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListGroupPolicies', listGroupPoliciesResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListGroupPoliciesResponse', listGroupPoliciesResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListGroupPoliciesResponse', listGroupPoliciesResponse_httpStatus - The response's http status code.
$sel:policyNames:ListGroupPoliciesResponse', listGroupPoliciesResponse_policyNames - A list of policy names.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
DeletePolicyVersion
data DeletePolicyVersion Source #
See: newDeletePolicyVersion smart constructor.
Constructors
| DeletePolicyVersion' Text Text |
Instances
newDeletePolicyVersion Source #
Arguments
| :: Text | |
| -> Text | |
| -> DeletePolicyVersion |
Create a value of DeletePolicyVersion with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:policyArn:DeletePolicyVersion', deletePolicyVersion_policyArn - The Amazon Resource Name (ARN) of the IAM policy from which you want to
delete a version.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
$sel:versionId:DeletePolicyVersion', deletePolicyVersion_versionId - The policy version to delete.
This parameter allows (through its regex pattern) a string of characters that consists of the lowercase letter 'v' followed by one or two digits, and optionally followed by a period '.' and a string of letters and digits.
For more information about managed policy versions, see Versioning for managed policies in the IAM User Guide.
data DeletePolicyVersionResponse Source #
See: newDeletePolicyVersionResponse smart constructor.
Constructors
| DeletePolicyVersionResponse' | |
Instances
newDeletePolicyVersionResponse :: DeletePolicyVersionResponse Source #
Create a value of DeletePolicyVersionResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
TagUser
See: newTagUser smart constructor.
Instances
Create a value of TagUser with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:TagUser', tagUser_userName - The name of the IAM user to which you want to add tags.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:tags:TagUser', tagUser_tags - The list of tags that you want to attach to the IAM user. Each tag
consists of a key name and an associated value.
data TagUserResponse Source #
See: newTagUserResponse smart constructor.
Constructors
| TagUserResponse' | |
Instances
| Eq TagUserResponse Source # | |
Defined in Amazonka.IAM.TagUser Methods (==) :: TagUserResponse -> TagUserResponse -> Bool # (/=) :: TagUserResponse -> TagUserResponse -> Bool # | |
| Read TagUserResponse Source # | |
Defined in Amazonka.IAM.TagUser Methods readsPrec :: Int -> ReadS TagUserResponse # readList :: ReadS [TagUserResponse] # | |
| Show TagUserResponse Source # | |
Defined in Amazonka.IAM.TagUser Methods showsPrec :: Int -> TagUserResponse -> ShowS # show :: TagUserResponse -> String # showList :: [TagUserResponse] -> ShowS # | |
| Generic TagUserResponse Source # | |
Defined in Amazonka.IAM.TagUser Associated Types type Rep TagUserResponse :: Type -> Type # Methods from :: TagUserResponse -> Rep TagUserResponse x # to :: Rep TagUserResponse x -> TagUserResponse # | |
| NFData TagUserResponse Source # | |
Defined in Amazonka.IAM.TagUser Methods rnf :: TagUserResponse -> () # | |
| type Rep TagUserResponse Source # | |
newTagUserResponse :: TagUserResponse Source #
Create a value of TagUserResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
DeleteInstanceProfile
data DeleteInstanceProfile Source #
See: newDeleteInstanceProfile smart constructor.
Constructors
| DeleteInstanceProfile' Text |
Instances
newDeleteInstanceProfile Source #
Create a value of DeleteInstanceProfile with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:instanceProfileName:DeleteInstanceProfile', deleteInstanceProfile_instanceProfileName - The name of the instance profile to delete.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data DeleteInstanceProfileResponse Source #
See: newDeleteInstanceProfileResponse smart constructor.
Constructors
| DeleteInstanceProfileResponse' | |
Instances
| Eq DeleteInstanceProfileResponse Source # | |
Defined in Amazonka.IAM.DeleteInstanceProfile | |
| Read DeleteInstanceProfileResponse Source # | |
| Show DeleteInstanceProfileResponse Source # | |
Defined in Amazonka.IAM.DeleteInstanceProfile Methods showsPrec :: Int -> DeleteInstanceProfileResponse -> ShowS # show :: DeleteInstanceProfileResponse -> String # showList :: [DeleteInstanceProfileResponse] -> ShowS # | |
| Generic DeleteInstanceProfileResponse Source # | |
Defined in Amazonka.IAM.DeleteInstanceProfile Associated Types type Rep DeleteInstanceProfileResponse :: Type -> Type # | |
| NFData DeleteInstanceProfileResponse Source # | |
Defined in Amazonka.IAM.DeleteInstanceProfile Methods rnf :: DeleteInstanceProfileResponse -> () # | |
| type Rep DeleteInstanceProfileResponse Source # | |
Defined in Amazonka.IAM.DeleteInstanceProfile | |
newDeleteInstanceProfileResponse :: DeleteInstanceProfileResponse Source #
Create a value of DeleteInstanceProfileResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
DetachRolePolicy
data DetachRolePolicy Source #
See: newDetachRolePolicy smart constructor.
Constructors
| DetachRolePolicy' Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> DetachRolePolicy |
Create a value of DetachRolePolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:roleName:DetachRolePolicy', detachRolePolicy_roleName - The name (friendly name, not ARN) of the IAM role to detach the policy
from.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyArn:DetachRolePolicy', detachRolePolicy_policyArn - The Amazon Resource Name (ARN) of the IAM policy you want to detach.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
data DetachRolePolicyResponse Source #
See: newDetachRolePolicyResponse smart constructor.
Constructors
| DetachRolePolicyResponse' | |
Instances
newDetachRolePolicyResponse :: DetachRolePolicyResponse Source #
Create a value of DetachRolePolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
RemoveRoleFromInstanceProfile
data RemoveRoleFromInstanceProfile Source #
See: newRemoveRoleFromInstanceProfile smart constructor.
Constructors
| RemoveRoleFromInstanceProfile' Text Text |
Instances
newRemoveRoleFromInstanceProfile Source #
Arguments
| :: Text | |
| -> Text | |
| -> RemoveRoleFromInstanceProfile |
Create a value of RemoveRoleFromInstanceProfile with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:instanceProfileName:RemoveRoleFromInstanceProfile', removeRoleFromInstanceProfile_instanceProfileName - The name of the instance profile to update.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:roleName:RemoveRoleFromInstanceProfile', removeRoleFromInstanceProfile_roleName - The name of the role to remove.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data RemoveRoleFromInstanceProfileResponse Source #
See: newRemoveRoleFromInstanceProfileResponse smart constructor.
Constructors
| RemoveRoleFromInstanceProfileResponse' | |
Instances
newRemoveRoleFromInstanceProfileResponse :: RemoveRoleFromInstanceProfileResponse Source #
Create a value of RemoveRoleFromInstanceProfileResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
CreatePolicyVersion
data CreatePolicyVersion Source #
See: newCreatePolicyVersion smart constructor.
Constructors
| CreatePolicyVersion' (Maybe Bool) Text Text |
Instances
newCreatePolicyVersion Source #
Arguments
| :: Text | |
| -> Text | |
| -> CreatePolicyVersion |
Create a value of CreatePolicyVersion with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:setAsDefault:CreatePolicyVersion', createPolicyVersion_setAsDefault - Specifies whether to set this version as the policy's default version.
When this parameter is true, the new policy version becomes the
operative version. That is, it becomes the version that is in effect for
the IAM users, groups, and roles that the policy is attached to.
For more information about managed policy versions, see Versioning for managed policies in the IAM User Guide.
$sel:policyArn:CreatePolicyVersion', createPolicyVersion_policyArn - The Amazon Resource Name (ARN) of the IAM policy to which you want to
add a new version.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
$sel:policyDocument:CreatePolicyVersion', createPolicyVersion_policyDocument - The JSON policy document that you want to use as the content for this
new version of the policy.
You must provide policies in JSON format in IAM. However, for CloudFormation templates formatted in YAML, you can provide the policy in JSON or YAML format. CloudFormation always converts a YAML policy to JSON format before submitting it to IAM.
The maximum length of the policy document that you can pass in this operation, including whitespace, is listed below. To view the maximum character counts of a managed policy with no whitespaces, see IAM and STS character quotas.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
data CreatePolicyVersionResponse Source #
Contains the response to a successful CreatePolicyVersion request.
See: newCreatePolicyVersionResponse smart constructor.
Constructors
| CreatePolicyVersionResponse' (Maybe PolicyVersion) Int |
Instances
newCreatePolicyVersionResponse Source #
Create a value of CreatePolicyVersionResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:policyVersion:CreatePolicyVersionResponse', createPolicyVersionResponse_policyVersion - A structure containing details about the new policy version.
$sel:httpStatus:CreatePolicyVersionResponse', createPolicyVersionResponse_httpStatus - The response's http status code.
CreateInstanceProfile
data CreateInstanceProfile Source #
See: newCreateInstanceProfile smart constructor.
Instances
newCreateInstanceProfile Source #
Create a value of CreateInstanceProfile with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:path:CreateInstanceProfile', createInstanceProfile_path - The path to the instance profile. For more information about paths, see
IAM Identifiers
in the IAM User Guide.
This parameter is optional. If it is not included, it defaults to a slash (/).
This parameter allows (through its
regex pattern) a string of characters
consisting of either a forward slash (/) by itself or a string that
must begin and end with forward slashes. In addition, it can contain any
ASCII character from the ! (\u0021) through the DEL character
(\u007F), including most punctuation characters, digits, and upper
and lowercased letters.
$sel:tags:CreateInstanceProfile', createInstanceProfile_tags - A list of tags that you want to attach to the newly created IAM instance
profile. Each tag consists of a key name and an associated value. For
more information about tagging, see
Tagging IAM resources
in the IAM User Guide.
If any one of the tags is invalid or if you exceed the allowed maximum number of tags, then the entire request fails and the resource is not created.
$sel:instanceProfileName:CreateInstanceProfile', createInstanceProfile_instanceProfileName - The name of the instance profile to create.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data CreateInstanceProfileResponse Source #
Contains the response to a successful CreateInstanceProfile request.
See: newCreateInstanceProfileResponse smart constructor.
Constructors
| CreateInstanceProfileResponse' Int InstanceProfile |
Instances
newCreateInstanceProfileResponse Source #
Arguments
| :: Int | |
| -> InstanceProfile | |
| -> CreateInstanceProfileResponse |
Create a value of CreateInstanceProfileResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:CreateInstanceProfileResponse', createInstanceProfileResponse_httpStatus - The response's http status code.
$sel:instanceProfile:CreateInstanceProfileResponse', createInstanceProfileResponse_instanceProfile - A structure containing details about the new instance profile.
CreateSAMLProvider
data CreateSAMLProvider Source #
See: newCreateSAMLProvider smart constructor.
Constructors
| CreateSAMLProvider' (Maybe [Tag]) Text Text |
Instances
newCreateSAMLProvider Source #
Arguments
| :: Text | |
| -> Text | |
| -> CreateSAMLProvider |
Create a value of CreateSAMLProvider with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:tags:CreateSAMLProvider', createSAMLProvider_tags - A list of tags that you want to attach to the new IAM SAML provider.
Each tag consists of a key name and an associated value. For more
information about tagging, see
Tagging IAM resources
in the IAM User Guide.
If any one of the tags is invalid or if you exceed the allowed maximum number of tags, then the entire request fails and the resource is not created.
$sel:sAMLMetadataDocument:CreateSAMLProvider', createSAMLProvider_sAMLMetadataDocument - An XML document generated by an identity provider (IdP) that supports
SAML 2.0. The document includes the issuer's name, expiration
information, and keys that can be used to validate the SAML
authentication response (assertions) that are received from the IdP. You
must generate the metadata document using the identity management
software that is used as your organization's IdP.
For more information, see About SAML 2.0-based federation in the IAM User Guide
$sel:name:CreateSAMLProvider', createSAMLProvider_name - The name of the provider to create.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data CreateSAMLProviderResponse Source #
Contains the response to a successful CreateSAMLProvider request.
See: newCreateSAMLProviderResponse smart constructor.
Instances
newCreateSAMLProviderResponse Source #
Create a value of CreateSAMLProviderResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:sAMLProviderArn:CreateSAMLProviderResponse', createSAMLProviderResponse_sAMLProviderArn - The Amazon Resource Name (ARN) of the new SAML provider resource in IAM.
$sel:tags:CreateSAMLProvider', createSAMLProviderResponse_tags - A list of tags that are attached to the new IAM SAML provider. The
returned list of tags is sorted by tag key. For more information about
tagging, see
Tagging IAM resources
in the IAM User Guide.
$sel:httpStatus:CreateSAMLProviderResponse', createSAMLProviderResponse_httpStatus - The response's http status code.
GetAccountAuthorizationDetails (Paginated)
data GetAccountAuthorizationDetails Source #
See: newGetAccountAuthorizationDetails smart constructor.
Constructors
| GetAccountAuthorizationDetails' (Maybe Text) (Maybe Natural) (Maybe [EntityType]) |
Instances
newGetAccountAuthorizationDetails :: GetAccountAuthorizationDetails Source #
Create a value of GetAccountAuthorizationDetails with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:GetAccountAuthorizationDetails', getAccountAuthorizationDetails_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:GetAccountAuthorizationDetails', getAccountAuthorizationDetails_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:filter':GetAccountAuthorizationDetails', getAccountAuthorizationDetails_filter - A list of entity types used to filter the results. Only the entities
that match the types you specify are included in the output. Use the
value LocalManagedPolicy to include customer managed policies.
The format for this parameter is a comma-separated (if more than one) list of strings. Each string value in the list must be one of the valid values listed below.
data GetAccountAuthorizationDetailsResponse Source #
Contains the response to a successful GetAccountAuthorizationDetails request.
See: newGetAccountAuthorizationDetailsResponse smart constructor.
Constructors
| GetAccountAuthorizationDetailsResponse' (Maybe [RoleDetail]) (Maybe [GroupDetail]) (Maybe [UserDetail]) (Maybe Text) (Maybe Bool) (Maybe [ManagedPolicyDetail]) Int |
Instances
newGetAccountAuthorizationDetailsResponse Source #
Arguments
| :: Int | |
| -> GetAccountAuthorizationDetailsResponse |
Create a value of GetAccountAuthorizationDetailsResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:roleDetailList:GetAccountAuthorizationDetailsResponse', getAccountAuthorizationDetailsResponse_roleDetailList - A list containing information about IAM roles.
$sel:groupDetailList:GetAccountAuthorizationDetailsResponse', getAccountAuthorizationDetailsResponse_groupDetailList - A list containing information about IAM groups.
$sel:userDetailList:GetAccountAuthorizationDetailsResponse', getAccountAuthorizationDetailsResponse_userDetailList - A list containing information about IAM users.
$sel:marker:GetAccountAuthorizationDetails', getAccountAuthorizationDetailsResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:GetAccountAuthorizationDetailsResponse', getAccountAuthorizationDetailsResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:policies:GetAccountAuthorizationDetailsResponse', getAccountAuthorizationDetailsResponse_policies - A list containing information about managed policies.
$sel:httpStatus:GetAccountAuthorizationDetailsResponse', getAccountAuthorizationDetailsResponse_httpStatus - The response's http status code.
GetServiceLinkedRoleDeletionStatus
data GetServiceLinkedRoleDeletionStatus Source #
See: newGetServiceLinkedRoleDeletionStatus smart constructor.
Constructors
| GetServiceLinkedRoleDeletionStatus' Text |
Instances
newGetServiceLinkedRoleDeletionStatus Source #
Arguments
| :: Text | |
| -> GetServiceLinkedRoleDeletionStatus |
Create a value of GetServiceLinkedRoleDeletionStatus with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:deletionTaskId:GetServiceLinkedRoleDeletionStatus', getServiceLinkedRoleDeletionStatus_deletionTaskId - The deletion task identifier. This identifier is returned by the
DeleteServiceLinkedRole operation in the format
task/aws-service-role/<service-principal-name>/<role-name>/<task-uuid>.
data GetServiceLinkedRoleDeletionStatusResponse Source #
See: newGetServiceLinkedRoleDeletionStatusResponse smart constructor.
Constructors
| GetServiceLinkedRoleDeletionStatusResponse' (Maybe DeletionTaskFailureReasonType) Int DeletionTaskStatusType |
Instances
newGetServiceLinkedRoleDeletionStatusResponse Source #
Arguments
| :: Int | |
| -> DeletionTaskStatusType | |
| -> GetServiceLinkedRoleDeletionStatusResponse |
Create a value of GetServiceLinkedRoleDeletionStatusResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:reason:GetServiceLinkedRoleDeletionStatusResponse', getServiceLinkedRoleDeletionStatusResponse_reason - An object that contains details about the reason the deletion failed.
$sel:httpStatus:GetServiceLinkedRoleDeletionStatusResponse', getServiceLinkedRoleDeletionStatusResponse_httpStatus - The response's http status code.
$sel:status:GetServiceLinkedRoleDeletionStatusResponse', getServiceLinkedRoleDeletionStatusResponse_status - The status of the deletion.
DeleteAccountAlias
data DeleteAccountAlias Source #
See: newDeleteAccountAlias smart constructor.
Constructors
| DeleteAccountAlias' Text |
Instances
newDeleteAccountAlias Source #
Arguments
| :: Text | |
| -> DeleteAccountAlias |
Create a value of DeleteAccountAlias with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:accountAlias:DeleteAccountAlias', deleteAccountAlias_accountAlias - The name of the account alias to delete.
This parameter allows (through its regex pattern) a string of characters consisting of lowercase letters, digits, and dashes. You cannot start or finish with a dash, nor can you have two dashes in a row.
data DeleteAccountAliasResponse Source #
See: newDeleteAccountAliasResponse smart constructor.
Constructors
| DeleteAccountAliasResponse' | |
Instances
newDeleteAccountAliasResponse :: DeleteAccountAliasResponse Source #
Create a value of DeleteAccountAliasResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
DetachUserPolicy
data DetachUserPolicy Source #
See: newDetachUserPolicy smart constructor.
Constructors
| DetachUserPolicy' Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> DetachUserPolicy |
Create a value of DetachUserPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:DetachUserPolicy', detachUserPolicy_userName - The name (friendly name, not ARN) of the IAM user to detach the policy
from.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyArn:DetachUserPolicy', detachUserPolicy_policyArn - The Amazon Resource Name (ARN) of the IAM policy you want to detach.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
data DetachUserPolicyResponse Source #
See: newDetachUserPolicyResponse smart constructor.
Constructors
| DetachUserPolicyResponse' | |
Instances
newDetachUserPolicyResponse :: DetachUserPolicyResponse Source #
Create a value of DetachUserPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
RemoveUserFromGroup
data RemoveUserFromGroup Source #
See: newRemoveUserFromGroup smart constructor.
Constructors
| RemoveUserFromGroup' Text Text |
Instances
newRemoveUserFromGroup Source #
Arguments
| :: Text | |
| -> Text | |
| -> RemoveUserFromGroup |
Create a value of RemoveUserFromGroup with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:groupName:RemoveUserFromGroup', removeUserFromGroup_groupName - The name of the group to update.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:userName:RemoveUserFromGroup', removeUserFromGroup_userName - The name of the user to remove.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data RemoveUserFromGroupResponse Source #
See: newRemoveUserFromGroupResponse smart constructor.
Constructors
| RemoveUserFromGroupResponse' | |
Instances
newRemoveUserFromGroupResponse :: RemoveUserFromGroupResponse Source #
Create a value of RemoveUserFromGroupResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
DeleteGroupPolicy
data DeleteGroupPolicy Source #
See: newDeleteGroupPolicy smart constructor.
Constructors
| DeleteGroupPolicy' Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> DeleteGroupPolicy |
Create a value of DeleteGroupPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:groupName:DeleteGroupPolicy', deleteGroupPolicy_groupName - The name (friendly name, not ARN) identifying the group that the policy
is embedded in.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyName:DeleteGroupPolicy', deleteGroupPolicy_policyName - The name identifying the policy document to delete.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data DeleteGroupPolicyResponse Source #
See: newDeleteGroupPolicyResponse smart constructor.
Constructors
| DeleteGroupPolicyResponse' | |
Instances
newDeleteGroupPolicyResponse :: DeleteGroupPolicyResponse Source #
Create a value of DeleteGroupPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
TagRole
See: newTagRole smart constructor.
Instances
Create a value of TagRole with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:roleName:TagRole', tagRole_roleName - The name of the IAM role to which you want to add tags.
This parameter accepts (through its regex pattern) a string of characters that consist of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:tags:TagRole', tagRole_tags - The list of tags that you want to attach to the IAM role. Each tag
consists of a key name and an associated value.
data TagRoleResponse Source #
See: newTagRoleResponse smart constructor.
Constructors
| TagRoleResponse' | |
Instances
| Eq TagRoleResponse Source # | |
Defined in Amazonka.IAM.TagRole Methods (==) :: TagRoleResponse -> TagRoleResponse -> Bool # (/=) :: TagRoleResponse -> TagRoleResponse -> Bool # | |
| Read TagRoleResponse Source # | |
Defined in Amazonka.IAM.TagRole Methods readsPrec :: Int -> ReadS TagRoleResponse # readList :: ReadS [TagRoleResponse] # | |
| Show TagRoleResponse Source # | |
Defined in Amazonka.IAM.TagRole Methods showsPrec :: Int -> TagRoleResponse -> ShowS # show :: TagRoleResponse -> String # showList :: [TagRoleResponse] -> ShowS # | |
| Generic TagRoleResponse Source # | |
Defined in Amazonka.IAM.TagRole Associated Types type Rep TagRoleResponse :: Type -> Type # Methods from :: TagRoleResponse -> Rep TagRoleResponse x # to :: Rep TagRoleResponse x -> TagRoleResponse # | |
| NFData TagRoleResponse Source # | |
Defined in Amazonka.IAM.TagRole Methods rnf :: TagRoleResponse -> () # | |
| type Rep TagRoleResponse Source # | |
newTagRoleResponse :: TagRoleResponse Source #
Create a value of TagRoleResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
PutGroupPolicy
data PutGroupPolicy Source #
See: newPutGroupPolicy smart constructor.
Constructors
| PutGroupPolicy' Text Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> Text | |
| -> PutGroupPolicy |
Create a value of PutGroupPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:groupName:PutGroupPolicy', putGroupPolicy_groupName - The name of the group to associate the policy with.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-.
$sel:policyName:PutGroupPolicy', putGroupPolicy_policyName - The name of the policy document.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyDocument:PutGroupPolicy', putGroupPolicy_policyDocument - The policy document.
You must provide policies in JSON format in IAM. However, for CloudFormation templates formatted in YAML, you can provide the policy in JSON or YAML format. CloudFormation always converts a YAML policy to JSON format before submitting it to = IAM.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
data PutGroupPolicyResponse Source #
See: newPutGroupPolicyResponse smart constructor.
Constructors
| PutGroupPolicyResponse' | |
Instances
| Eq PutGroupPolicyResponse Source # | |
Defined in Amazonka.IAM.PutGroupPolicy Methods (==) :: PutGroupPolicyResponse -> PutGroupPolicyResponse -> Bool # (/=) :: PutGroupPolicyResponse -> PutGroupPolicyResponse -> Bool # | |
| Read PutGroupPolicyResponse Source # | |
Defined in Amazonka.IAM.PutGroupPolicy | |
| Show PutGroupPolicyResponse Source # | |
Defined in Amazonka.IAM.PutGroupPolicy Methods showsPrec :: Int -> PutGroupPolicyResponse -> ShowS # show :: PutGroupPolicyResponse -> String # showList :: [PutGroupPolicyResponse] -> ShowS # | |
| Generic PutGroupPolicyResponse Source # | |
Defined in Amazonka.IAM.PutGroupPolicy Associated Types type Rep PutGroupPolicyResponse :: Type -> Type # Methods from :: PutGroupPolicyResponse -> Rep PutGroupPolicyResponse x # to :: Rep PutGroupPolicyResponse x -> PutGroupPolicyResponse # | |
| NFData PutGroupPolicyResponse Source # | |
Defined in Amazonka.IAM.PutGroupPolicy Methods rnf :: PutGroupPolicyResponse -> () # | |
| type Rep PutGroupPolicyResponse Source # | |
newPutGroupPolicyResponse :: PutGroupPolicyResponse Source #
Create a value of PutGroupPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
GetLoginProfile
data GetLoginProfile Source #
See: newGetLoginProfile smart constructor.
Constructors
| GetLoginProfile' Text |
Instances
Arguments
| :: Text | |
| -> GetLoginProfile |
Create a value of GetLoginProfile with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:GetLoginProfile', getLoginProfile_userName - The name of the user whose login profile you want to retrieve.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data GetLoginProfileResponse Source #
Contains the response to a successful GetLoginProfile request.
See: newGetLoginProfileResponse smart constructor.
Constructors
| GetLoginProfileResponse' Int LoginProfile |
Instances
newGetLoginProfileResponse Source #
Arguments
| :: Int | |
| -> LoginProfile | |
| -> GetLoginProfileResponse |
Create a value of GetLoginProfileResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:GetLoginProfileResponse', getLoginProfileResponse_httpStatus - The response's http status code.
$sel:loginProfile:GetLoginProfileResponse', getLoginProfileResponse_loginProfile - A structure containing the user name and the profile creation date for
the user.
GetGroupPolicy
data GetGroupPolicy Source #
See: newGetGroupPolicy smart constructor.
Constructors
| GetGroupPolicy' Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> GetGroupPolicy |
Create a value of GetGroupPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:groupName:GetGroupPolicy', getGroupPolicy_groupName - The name of the group the policy is associated with.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyName:GetGroupPolicy', getGroupPolicy_policyName - The name of the policy document to get.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data GetGroupPolicyResponse Source #
Contains the response to a successful GetGroupPolicy request.
See: newGetGroupPolicyResponse smart constructor.
Constructors
| GetGroupPolicyResponse' Int Text Text Text |
Instances
newGetGroupPolicyResponse Source #
Arguments
| :: Int | |
| -> Text | |
| -> Text | |
| -> Text | |
| -> GetGroupPolicyResponse |
Create a value of GetGroupPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:GetGroupPolicyResponse', getGroupPolicyResponse_httpStatus - The response's http status code.
$sel:groupName:GetGroupPolicy', getGroupPolicyResponse_groupName - The group the policy is associated with.
$sel:policyName:GetGroupPolicy', getGroupPolicyResponse_policyName - The name of the policy.
$sel:policyDocument:GetGroupPolicyResponse', getGroupPolicyResponse_policyDocument - The policy document.
IAM stores policies in JSON format. However, resources that were created using CloudFormation templates can be formatted in YAML. CloudFormation always converts a YAML policy to JSON format before submitting it to IAM.
GenerateOrganizationsAccessReport
data GenerateOrganizationsAccessReport Source #
See: newGenerateOrganizationsAccessReport smart constructor.
Constructors
| GenerateOrganizationsAccessReport' (Maybe Text) Text |
Instances
newGenerateOrganizationsAccessReport Source #
Arguments
| :: Text | |
| -> GenerateOrganizationsAccessReport |
Create a value of GenerateOrganizationsAccessReport with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:organizationsPolicyId:GenerateOrganizationsAccessReport', generateOrganizationsAccessReport_organizationsPolicyId - The identifier of the Organizations service control policy (SCP). This
parameter is optional.
This ID is used to generate information about when an account principal that is limited by the SCP attempted to access an Amazon Web Services service.
$sel:entityPath:GenerateOrganizationsAccessReport', generateOrganizationsAccessReport_entityPath - The path of the Organizations entity (root, OU, or account). You can
build an entity path using the known structure of your organization. For
example, assume that your account ID is 123456789012 and its parent OU
ID is ou-rge0-awsabcde. The organization root ID is
r-f6g7h8i9j0example and your organization ID is o-a1b2c3d4e5. Your
entity path is
o-a1b2c3d4e5/r-f6g7h8i9j0example/ou-rge0-awsabcde/123456789012.
data GenerateOrganizationsAccessReportResponse Source #
See: newGenerateOrganizationsAccessReportResponse smart constructor.
Constructors
| GenerateOrganizationsAccessReportResponse' (Maybe Text) Int |
Instances
newGenerateOrganizationsAccessReportResponse Source #
Arguments
| :: Int | |
| -> GenerateOrganizationsAccessReportResponse |
Create a value of GenerateOrganizationsAccessReportResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:jobId:GenerateOrganizationsAccessReportResponse', generateOrganizationsAccessReportResponse_jobId - The job identifier that you can use in the GetOrganizationsAccessReport
operation.
$sel:httpStatus:GenerateOrganizationsAccessReportResponse', generateOrganizationsAccessReportResponse_httpStatus - The response's http status code.
ChangePassword
data ChangePassword Source #
See: newChangePassword smart constructor.
Constructors
| ChangePassword' (Sensitive Text) (Sensitive Text) |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> ChangePassword |
Create a value of ChangePassword with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:oldPassword:ChangePassword', changePassword_oldPassword - The IAM user's current password.
$sel:newPassword':ChangePassword', changePassword_newPassword - The new password. The new password must conform to the Amazon Web
Services account's password policy, if one exists.
The regex pattern that is used to
validate this parameter is a string of characters. That string can
include almost any printable ASCII character from the space (\u0020)
through the end of the ASCII character range (\u00FF). You can also
include the tab (\u0009), line feed (\u000A), and carriage return
(\u000D) characters. Any of these characters are valid in a password.
However, many tools, such as the Amazon Web Services Management Console,
might restrict the ability to type certain characters because they have
special meaning within that tool.
data ChangePasswordResponse Source #
See: newChangePasswordResponse smart constructor.
Constructors
| ChangePasswordResponse' | |
Instances
| Eq ChangePasswordResponse Source # | |
Defined in Amazonka.IAM.ChangePassword Methods (==) :: ChangePasswordResponse -> ChangePasswordResponse -> Bool # (/=) :: ChangePasswordResponse -> ChangePasswordResponse -> Bool # | |
| Read ChangePasswordResponse Source # | |
Defined in Amazonka.IAM.ChangePassword | |
| Show ChangePasswordResponse Source # | |
Defined in Amazonka.IAM.ChangePassword Methods showsPrec :: Int -> ChangePasswordResponse -> ShowS # show :: ChangePasswordResponse -> String # showList :: [ChangePasswordResponse] -> ShowS # | |
| Generic ChangePasswordResponse Source # | |
Defined in Amazonka.IAM.ChangePassword Associated Types type Rep ChangePasswordResponse :: Type -> Type # Methods from :: ChangePasswordResponse -> Rep ChangePasswordResponse x # to :: Rep ChangePasswordResponse x -> ChangePasswordResponse # | |
| NFData ChangePasswordResponse Source # | |
Defined in Amazonka.IAM.ChangePassword Methods rnf :: ChangePasswordResponse -> () # | |
| type Rep ChangePasswordResponse Source # | |
newChangePasswordResponse :: ChangePasswordResponse Source #
Create a value of ChangePasswordResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
ListServerCertificates (Paginated)
data ListServerCertificates Source #
See: newListServerCertificates smart constructor.
Instances
newListServerCertificates :: ListServerCertificates Source #
Create a value of ListServerCertificates with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:pathPrefix:ListServerCertificates', listServerCertificates_pathPrefix - The path prefix for filtering the results. For example:
/company/servercerts would get all server certificates for which the
path starts with /company/servercerts.
This parameter is optional. If it is not included, it defaults to a
slash (/), listing all server certificates. This parameter allows
(through its regex pattern) a string
of characters consisting of either a forward slash (/) by itself or a
string that must begin and end with forward slashes. In addition, it can
contain any ASCII character from the ! (\u0021) through the DEL
character (\u007F), including most punctuation characters, digits,
and upper and lowercased letters.
$sel:marker:ListServerCertificates', listServerCertificates_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListServerCertificates', listServerCertificates_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
data ListServerCertificatesResponse Source #
Contains the response to a successful ListServerCertificates request.
See: newListServerCertificatesResponse smart constructor.
Constructors
| ListServerCertificatesResponse' (Maybe Text) (Maybe Bool) Int [ServerCertificateMetadata] |
Instances
newListServerCertificatesResponse Source #
Create a value of ListServerCertificatesResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListServerCertificates', listServerCertificatesResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListServerCertificatesResponse', listServerCertificatesResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListServerCertificatesResponse', listServerCertificatesResponse_httpStatus - The response's http status code.
$sel:serverCertificateMetadataList:ListServerCertificatesResponse', listServerCertificatesResponse_serverCertificateMetadataList - A list of server certificates.
DeleteServiceLinkedRole
data DeleteServiceLinkedRole Source #
See: newDeleteServiceLinkedRole smart constructor.
Constructors
| DeleteServiceLinkedRole' Text |
Instances
newDeleteServiceLinkedRole Source #
Create a value of DeleteServiceLinkedRole with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:roleName:DeleteServiceLinkedRole', deleteServiceLinkedRole_roleName - The name of the service-linked role to be deleted.
data DeleteServiceLinkedRoleResponse Source #
See: newDeleteServiceLinkedRoleResponse smart constructor.
Constructors
| DeleteServiceLinkedRoleResponse' Int Text |
Instances
newDeleteServiceLinkedRoleResponse Source #
Arguments
| :: Int | |
| -> Text | |
| -> DeleteServiceLinkedRoleResponse |
Create a value of DeleteServiceLinkedRoleResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:DeleteServiceLinkedRoleResponse', deleteServiceLinkedRoleResponse_httpStatus - The response's http status code.
$sel:deletionTaskId:DeleteServiceLinkedRoleResponse', deleteServiceLinkedRoleResponse_deletionTaskId - The deletion task identifier that you can use to check the status of the
deletion. This identifier is returned in the format
task/aws-service-role/<service-principal-name>/<role-name>/<task-uuid>.
DeletePolicy
data DeletePolicy Source #
See: newDeletePolicy smart constructor.
Constructors
| DeletePolicy' Text |
Instances
Arguments
| :: Text | |
| -> DeletePolicy |
Create a value of DeletePolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:policyArn:DeletePolicy', deletePolicy_policyArn - The Amazon Resource Name (ARN) of the IAM policy you want to delete.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
data DeletePolicyResponse Source #
See: newDeletePolicyResponse smart constructor.
Constructors
| DeletePolicyResponse' | |
Instances
newDeletePolicyResponse :: DeletePolicyResponse Source #
Create a value of DeletePolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
UpdateAssumeRolePolicy
data UpdateAssumeRolePolicy Source #
See: newUpdateAssumeRolePolicy smart constructor.
Constructors
| UpdateAssumeRolePolicy' Text Text |
Instances
newUpdateAssumeRolePolicy Source #
Arguments
| :: Text | |
| -> Text | |
| -> UpdateAssumeRolePolicy |
Create a value of UpdateAssumeRolePolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:roleName:UpdateAssumeRolePolicy', updateAssumeRolePolicy_roleName - The name of the role to update with the new policy.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyDocument:UpdateAssumeRolePolicy', updateAssumeRolePolicy_policyDocument - The policy that grants an entity permission to assume the role.
You must provide policies in JSON format in IAM. However, for CloudFormation templates formatted in YAML, you can provide the policy in JSON or YAML format. CloudFormation always converts a YAML policy to JSON format before submitting it to IAM.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
data UpdateAssumeRolePolicyResponse Source #
See: newUpdateAssumeRolePolicyResponse smart constructor.
Constructors
| UpdateAssumeRolePolicyResponse' | |
Instances
| Eq UpdateAssumeRolePolicyResponse Source # | |
Defined in Amazonka.IAM.UpdateAssumeRolePolicy | |
| Read UpdateAssumeRolePolicyResponse Source # | |
| Show UpdateAssumeRolePolicyResponse Source # | |
Defined in Amazonka.IAM.UpdateAssumeRolePolicy Methods showsPrec :: Int -> UpdateAssumeRolePolicyResponse -> ShowS # show :: UpdateAssumeRolePolicyResponse -> String # showList :: [UpdateAssumeRolePolicyResponse] -> ShowS # | |
| Generic UpdateAssumeRolePolicyResponse Source # | |
Defined in Amazonka.IAM.UpdateAssumeRolePolicy Associated Types type Rep UpdateAssumeRolePolicyResponse :: Type -> Type # | |
| NFData UpdateAssumeRolePolicyResponse Source # | |
Defined in Amazonka.IAM.UpdateAssumeRolePolicy Methods rnf :: UpdateAssumeRolePolicyResponse -> () # | |
| type Rep UpdateAssumeRolePolicyResponse Source # | |
Defined in Amazonka.IAM.UpdateAssumeRolePolicy | |
newUpdateAssumeRolePolicyResponse :: UpdateAssumeRolePolicyResponse Source #
Create a value of UpdateAssumeRolePolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
GetServiceLastAccessedDetailsWithEntities
data GetServiceLastAccessedDetailsWithEntities Source #
See: newGetServiceLastAccessedDetailsWithEntities smart constructor.
Instances
newGetServiceLastAccessedDetailsWithEntities Source #
Arguments
| :: Text | |
| -> Text |
|
| -> GetServiceLastAccessedDetailsWithEntities |
Create a value of GetServiceLastAccessedDetailsWithEntities with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:GetServiceLastAccessedDetailsWithEntities', getServiceLastAccessedDetailsWithEntities_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:GetServiceLastAccessedDetailsWithEntities', getServiceLastAccessedDetailsWithEntities_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:jobId:GetServiceLastAccessedDetailsWithEntities', getServiceLastAccessedDetailsWithEntities_jobId - The ID of the request generated by the
GenerateServiceLastAccessedDetails operation.
$sel:serviceNamespace:GetServiceLastAccessedDetailsWithEntities', getServiceLastAccessedDetailsWithEntities_serviceNamespace - The service namespace for an Amazon Web Services service. Provide the
service namespace to learn when the IAM entity last attempted to access
the specified service.
To learn the service namespace for a service, see
Actions, resources, and condition keys for Amazon Web Services services
in the IAM User Guide. Choose the name of the service to view details
for that service. In the first paragraph, find the service prefix. For
example, (service prefix: a4b). For more information about service
namespaces, see
Amazon Web Services service namespaces
in the Amazon Web Services General Reference.
data GetServiceLastAccessedDetailsWithEntitiesResponse Source #
See: newGetServiceLastAccessedDetailsWithEntitiesResponse smart constructor.
Constructors
| GetServiceLastAccessedDetailsWithEntitiesResponse' (Maybe ErrorDetails) (Maybe Text) (Maybe Bool) Int JobStatusType ISO8601 ISO8601 [EntityDetails] |
Instances
newGetServiceLastAccessedDetailsWithEntitiesResponse Source #
Arguments
Create a value of GetServiceLastAccessedDetailsWithEntitiesResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:error:GetServiceLastAccessedDetailsWithEntitiesResponse', getServiceLastAccessedDetailsWithEntitiesResponse_error - An object that contains details about the reason the operation failed.
$sel:marker:GetServiceLastAccessedDetailsWithEntities', getServiceLastAccessedDetailsWithEntitiesResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:GetServiceLastAccessedDetailsWithEntitiesResponse', getServiceLastAccessedDetailsWithEntitiesResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:GetServiceLastAccessedDetailsWithEntitiesResponse', getServiceLastAccessedDetailsWithEntitiesResponse_httpStatus - The response's http status code.
$sel:jobStatus:GetServiceLastAccessedDetailsWithEntitiesResponse', getServiceLastAccessedDetailsWithEntitiesResponse_jobStatus - The status of the job.
$sel:jobCreationDate:GetServiceLastAccessedDetailsWithEntitiesResponse', getServiceLastAccessedDetailsWithEntitiesResponse_jobCreationDate - The date and time,
in ISO 8601 date-time format, when the
report job was created.
$sel:jobCompletionDate:GetServiceLastAccessedDetailsWithEntitiesResponse', getServiceLastAccessedDetailsWithEntitiesResponse_jobCompletionDate - The date and time,
in ISO 8601 date-time format, when the
generated report job was completed or failed.
This field is null if the job is still in progress, as indicated by a
job status value of IN_PROGRESS.
$sel:entityDetailsList:GetServiceLastAccessedDetailsWithEntitiesResponse', getServiceLastAccessedDetailsWithEntitiesResponse_entityDetailsList - An EntityDetailsList object that contains details about when an IAM
entity (user or role) used group or policy permissions in an attempt to
access the specified Amazon Web Services service.
UntagServerCertificate
data UntagServerCertificate Source #
See: newUntagServerCertificate smart constructor.
Constructors
| UntagServerCertificate' Text [Text] |
Instances
newUntagServerCertificate Source #
Create a value of UntagServerCertificate with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:serverCertificateName:UntagServerCertificate', untagServerCertificate_serverCertificateName - The name of the IAM server certificate from which you want to remove
tags.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:tagKeys:UntagServerCertificate', untagServerCertificate_tagKeys - A list of key names as a simple array of strings. The tags with matching
keys are removed from the specified IAM server certificate.
data UntagServerCertificateResponse Source #
See: newUntagServerCertificateResponse smart constructor.
Constructors
| UntagServerCertificateResponse' | |
Instances
| Eq UntagServerCertificateResponse Source # | |
Defined in Amazonka.IAM.UntagServerCertificate | |
| Read UntagServerCertificateResponse Source # | |
| Show UntagServerCertificateResponse Source # | |
Defined in Amazonka.IAM.UntagServerCertificate Methods showsPrec :: Int -> UntagServerCertificateResponse -> ShowS # show :: UntagServerCertificateResponse -> String # showList :: [UntagServerCertificateResponse] -> ShowS # | |
| Generic UntagServerCertificateResponse Source # | |
Defined in Amazonka.IAM.UntagServerCertificate Associated Types type Rep UntagServerCertificateResponse :: Type -> Type # | |
| NFData UntagServerCertificateResponse Source # | |
Defined in Amazonka.IAM.UntagServerCertificate Methods rnf :: UntagServerCertificateResponse -> () # | |
| type Rep UntagServerCertificateResponse Source # | |
Defined in Amazonka.IAM.UntagServerCertificate | |
newUntagServerCertificateResponse :: UntagServerCertificateResponse Source #
Create a value of UntagServerCertificateResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
GetInstanceProfile
data GetInstanceProfile Source #
See: newGetInstanceProfile smart constructor.
Constructors
| GetInstanceProfile' Text |
Instances
newGetInstanceProfile Source #
Create a value of GetInstanceProfile with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:instanceProfileName:GetInstanceProfile', getInstanceProfile_instanceProfileName - The name of the instance profile to get information about.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data GetInstanceProfileResponse Source #
Contains the response to a successful GetInstanceProfile request.
See: newGetInstanceProfileResponse smart constructor.
Constructors
| GetInstanceProfileResponse' Int InstanceProfile |
Instances
newGetInstanceProfileResponse Source #
Arguments
| :: Int | |
| -> InstanceProfile | |
| -> GetInstanceProfileResponse |
Create a value of GetInstanceProfileResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:GetInstanceProfileResponse', getInstanceProfileResponse_httpStatus - The response's http status code.
$sel:instanceProfile:GetInstanceProfileResponse', getInstanceProfileResponse_instanceProfile - A structure containing details about the instance profile.
CreateLoginProfile
data CreateLoginProfile Source #
See: newCreateLoginProfile smart constructor.
Instances
newCreateLoginProfile Source #
Arguments
| :: Text | |
| -> Text | |
| -> CreateLoginProfile |
Create a value of CreateLoginProfile with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:passwordResetRequired:CreateLoginProfile', createLoginProfile_passwordResetRequired - Specifies whether the user is required to set a new password on next
sign-in.
$sel:userName:CreateLoginProfile', createLoginProfile_userName - The name of the IAM user to create a password for. The user must already
exist.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:password:CreateLoginProfile', createLoginProfile_password - The new password for the user.
The regex pattern that is used to
validate this parameter is a string of characters. That string can
include almost any printable ASCII character from the space (\u0020)
through the end of the ASCII character range (\u00FF). You can also
include the tab (\u0009), line feed (\u000A), and carriage return
(\u000D) characters. Any of these characters are valid in a password.
However, many tools, such as the Amazon Web Services Management Console,
might restrict the ability to type certain characters because they have
special meaning within that tool.
data CreateLoginProfileResponse Source #
Contains the response to a successful CreateLoginProfile request.
See: newCreateLoginProfileResponse smart constructor.
Constructors
| CreateLoginProfileResponse' Int LoginProfile |
Instances
newCreateLoginProfileResponse Source #
Arguments
| :: Int | |
| -> LoginProfile | |
| -> CreateLoginProfileResponse |
Create a value of CreateLoginProfileResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:CreateLoginProfileResponse', createLoginProfileResponse_httpStatus - The response's http status code.
$sel:loginProfile:CreateLoginProfileResponse', createLoginProfileResponse_loginProfile - A structure containing the user name and password create date.
GetSAMLProvider
data GetSAMLProvider Source #
See: newGetSAMLProvider smart constructor.
Constructors
| GetSAMLProvider' Text |
Instances
Arguments
| :: Text | |
| -> GetSAMLProvider |
Create a value of GetSAMLProvider with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:sAMLProviderArn:GetSAMLProvider', getSAMLProvider_sAMLProviderArn - The Amazon Resource Name (ARN) of the SAML provider resource object in
IAM to get information about.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
data GetSAMLProviderResponse Source #
Contains the response to a successful GetSAMLProvider request.
See: newGetSAMLProviderResponse smart constructor.
Instances
newGetSAMLProviderResponse Source #
Create a value of GetSAMLProviderResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:createDate:GetSAMLProviderResponse', getSAMLProviderResponse_createDate - The date and time when the SAML provider was created.
$sel:validUntil:GetSAMLProviderResponse', getSAMLProviderResponse_validUntil - The expiration date and time for the SAML provider.
$sel:tags:GetSAMLProviderResponse', getSAMLProviderResponse_tags - A list of tags that are attached to the specified IAM SAML provider. The
returned list of tags is sorted by tag key. For more information about
tagging, see
Tagging IAM resources
in the IAM User Guide.
$sel:sAMLMetadataDocument:GetSAMLProviderResponse', getSAMLProviderResponse_sAMLMetadataDocument - The XML metadata document that includes information about an identity
provider.
$sel:httpStatus:GetSAMLProviderResponse', getSAMLProviderResponse_httpStatus - The response's http status code.
AddRoleToInstanceProfile
data AddRoleToInstanceProfile Source #
See: newAddRoleToInstanceProfile smart constructor.
Constructors
| AddRoleToInstanceProfile' Text Text |
Instances
newAddRoleToInstanceProfile Source #
Arguments
| :: Text | |
| -> Text | |
| -> AddRoleToInstanceProfile |
Create a value of AddRoleToInstanceProfile with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:instanceProfileName:AddRoleToInstanceProfile', addRoleToInstanceProfile_instanceProfileName - The name of the instance profile to update.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:roleName:AddRoleToInstanceProfile', addRoleToInstanceProfile_roleName - The name of the role to add.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data AddRoleToInstanceProfileResponse Source #
See: newAddRoleToInstanceProfileResponse smart constructor.
Constructors
| AddRoleToInstanceProfileResponse' | |
Instances
| Eq AddRoleToInstanceProfileResponse Source # | |
| Read AddRoleToInstanceProfileResponse Source # | |
| Show AddRoleToInstanceProfileResponse Source # | |
Defined in Amazonka.IAM.AddRoleToInstanceProfile Methods showsPrec :: Int -> AddRoleToInstanceProfileResponse -> ShowS # | |
| Generic AddRoleToInstanceProfileResponse Source # | |
Defined in Amazonka.IAM.AddRoleToInstanceProfile Associated Types type Rep AddRoleToInstanceProfileResponse :: Type -> Type # | |
| NFData AddRoleToInstanceProfileResponse Source # | |
Defined in Amazonka.IAM.AddRoleToInstanceProfile Methods rnf :: AddRoleToInstanceProfileResponse -> () # | |
| type Rep AddRoleToInstanceProfileResponse Source # | |
Defined in Amazonka.IAM.AddRoleToInstanceProfile | |
newAddRoleToInstanceProfileResponse :: AddRoleToInstanceProfileResponse Source #
Create a value of AddRoleToInstanceProfileResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
ListGroupsForUser (Paginated)
data ListGroupsForUser Source #
See: newListGroupsForUser smart constructor.
Instances
Arguments
| :: Text | |
| -> ListGroupsForUser |
Create a value of ListGroupsForUser with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListGroupsForUser', listGroupsForUser_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListGroupsForUser', listGroupsForUser_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:userName:ListGroupsForUser', listGroupsForUser_userName - The name of the user to list groups for.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data ListGroupsForUserResponse Source #
Contains the response to a successful ListGroupsForUser request.
See: newListGroupsForUserResponse smart constructor.
Instances
newListGroupsForUserResponse Source #
Create a value of ListGroupsForUserResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListGroupsForUser', listGroupsForUserResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListGroupsForUserResponse', listGroupsForUserResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListGroupsForUserResponse', listGroupsForUserResponse_httpStatus - The response's http status code.
$sel:groups:ListGroupsForUserResponse', listGroupsForUserResponse_groups - A list of groups.
ListEntitiesForPolicy (Paginated)
data ListEntitiesForPolicy Source #
See: newListEntitiesForPolicy smart constructor.
Constructors
| ListEntitiesForPolicy' (Maybe Text) (Maybe EntityType) (Maybe Text) (Maybe Natural) (Maybe PolicyUsageType) Text |
Instances
newListEntitiesForPolicy Source #
Create a value of ListEntitiesForPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:pathPrefix:ListEntitiesForPolicy', listEntitiesForPolicy_pathPrefix - The path prefix for filtering the results. This parameter is optional.
If it is not included, it defaults to a slash (/), listing all
entities.
This parameter allows (through its
regex pattern) a string of characters
consisting of either a forward slash (/) by itself or a string that
must begin and end with forward slashes. In addition, it can contain any
ASCII character from the ! (\u0021) through the DEL character
(\u007F), including most punctuation characters, digits, and upper
and lowercased letters.
$sel:entityFilter:ListEntitiesForPolicy', listEntitiesForPolicy_entityFilter - The entity type to use for filtering the results.
For example, when EntityFilter is Role, only the roles that are
attached to the specified policy are returned. This parameter is
optional. If it is not included, all attached entities (users, groups,
and roles) are returned. The argument for this parameter must be one of
the valid values listed below.
$sel:marker:ListEntitiesForPolicy', listEntitiesForPolicy_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListEntitiesForPolicy', listEntitiesForPolicy_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:policyUsageFilter:ListEntitiesForPolicy', listEntitiesForPolicy_policyUsageFilter - The policy usage method to use for filtering the results.
To list only permissions policies,
set PolicyUsageFilter to PermissionsPolicy. To list only the
policies used to set permissions boundaries, set the value
to PermissionsBoundary.
This parameter is optional. If it is not included, all policies are returned.
$sel:policyArn:ListEntitiesForPolicy', listEntitiesForPolicy_policyArn - The Amazon Resource Name (ARN) of the IAM policy for which you want the
versions.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
data ListEntitiesForPolicyResponse Source #
Contains the response to a successful ListEntitiesForPolicy request.
See: newListEntitiesForPolicyResponse smart constructor.
Constructors
| ListEntitiesForPolicyResponse' (Maybe [PolicyGroup]) (Maybe [PolicyRole]) (Maybe Text) (Maybe [PolicyUser]) (Maybe Bool) Int |
Instances
newListEntitiesForPolicyResponse Source #
Create a value of ListEntitiesForPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:policyGroups:ListEntitiesForPolicyResponse', listEntitiesForPolicyResponse_policyGroups - A list of IAM groups that the policy is attached to.
$sel:policyRoles:ListEntitiesForPolicyResponse', listEntitiesForPolicyResponse_policyRoles - A list of IAM roles that the policy is attached to.
$sel:marker:ListEntitiesForPolicy', listEntitiesForPolicyResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:policyUsers:ListEntitiesForPolicyResponse', listEntitiesForPolicyResponse_policyUsers - A list of IAM users that the policy is attached to.
$sel:isTruncated:ListEntitiesForPolicyResponse', listEntitiesForPolicyResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListEntitiesForPolicyResponse', listEntitiesForPolicyResponse_httpStatus - The response's http status code.
AddUserToGroup
data AddUserToGroup Source #
See: newAddUserToGroup smart constructor.
Constructors
| AddUserToGroup' Text Text |
Instances
Create a value of AddUserToGroup with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:groupName:AddUserToGroup', addUserToGroup_groupName - The name of the group to update.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:userName:AddUserToGroup', addUserToGroup_userName - The name of the user to add.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data AddUserToGroupResponse Source #
See: newAddUserToGroupResponse smart constructor.
Constructors
| AddUserToGroupResponse' | |
Instances
| Eq AddUserToGroupResponse Source # | |
Defined in Amazonka.IAM.AddUserToGroup Methods (==) :: AddUserToGroupResponse -> AddUserToGroupResponse -> Bool # (/=) :: AddUserToGroupResponse -> AddUserToGroupResponse -> Bool # | |
| Read AddUserToGroupResponse Source # | |
Defined in Amazonka.IAM.AddUserToGroup | |
| Show AddUserToGroupResponse Source # | |
Defined in Amazonka.IAM.AddUserToGroup Methods showsPrec :: Int -> AddUserToGroupResponse -> ShowS # show :: AddUserToGroupResponse -> String # showList :: [AddUserToGroupResponse] -> ShowS # | |
| Generic AddUserToGroupResponse Source # | |
Defined in Amazonka.IAM.AddUserToGroup Associated Types type Rep AddUserToGroupResponse :: Type -> Type # Methods from :: AddUserToGroupResponse -> Rep AddUserToGroupResponse x # to :: Rep AddUserToGroupResponse x -> AddUserToGroupResponse # | |
| NFData AddUserToGroupResponse Source # | |
Defined in Amazonka.IAM.AddUserToGroup Methods rnf :: AddUserToGroupResponse -> () # | |
| type Rep AddUserToGroupResponse Source # | |
newAddUserToGroupResponse :: AddUserToGroupResponse Source #
Create a value of AddUserToGroupResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
TagOpenIDConnectProvider
data TagOpenIDConnectProvider Source #
See: newTagOpenIDConnectProvider smart constructor.
Constructors
| TagOpenIDConnectProvider' Text [Tag] |
Instances
newTagOpenIDConnectProvider Source #
Create a value of TagOpenIDConnectProvider with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:openIDConnectProviderArn:TagOpenIDConnectProvider', tagOpenIDConnectProvider_openIDConnectProviderArn - The ARN of the OIDC identity provider in IAM to which you want to add
tags.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:tags:TagOpenIDConnectProvider', tagOpenIDConnectProvider_tags - The list of tags that you want to attach to the OIDC identity provider
in IAM. Each tag consists of a key name and an associated value.
data TagOpenIDConnectProviderResponse Source #
See: newTagOpenIDConnectProviderResponse smart constructor.
Constructors
| TagOpenIDConnectProviderResponse' | |
Instances
| Eq TagOpenIDConnectProviderResponse Source # | |
| Read TagOpenIDConnectProviderResponse Source # | |
| Show TagOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.TagOpenIDConnectProvider Methods showsPrec :: Int -> TagOpenIDConnectProviderResponse -> ShowS # | |
| Generic TagOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.TagOpenIDConnectProvider Associated Types type Rep TagOpenIDConnectProviderResponse :: Type -> Type # | |
| NFData TagOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.TagOpenIDConnectProvider Methods rnf :: TagOpenIDConnectProviderResponse -> () # | |
| type Rep TagOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.TagOpenIDConnectProvider | |
newTagOpenIDConnectProviderResponse :: TagOpenIDConnectProviderResponse Source #
Create a value of TagOpenIDConnectProviderResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
SimulatePrincipalPolicy (Paginated)
data SimulatePrincipalPolicy Source #
See: newSimulatePrincipalPolicy smart constructor.
Constructors
| SimulatePrincipalPolicy' (Maybe [Text]) (Maybe Text) (Maybe Text) (Maybe Text) (Maybe [Text]) (Maybe [Text]) (Maybe Text) (Maybe Natural) (Maybe [ContextEntry]) (Maybe Text) Text [Text] |
Instances
newSimulatePrincipalPolicy Source #
Create a value of SimulatePrincipalPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:policyInputList:SimulatePrincipalPolicy', simulatePrincipalPolicy_policyInputList - An optional list of additional policy documents to include in the
simulation. Each document is specified as a string containing the
complete, valid JSON text of an IAM policy.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
$sel:resourcePolicy:SimulatePrincipalPolicy', simulatePrincipalPolicy_resourcePolicy - A resource-based policy to include in the simulation provided as a
string. Each resource in the simulation is treated as if it had this
policy attached. You can include only one resource-based policy in a
simulation.
The maximum length of the policy document that you can pass in this operation, including whitespace, is listed below. To view the maximum character counts of a managed policy with no whitespaces, see IAM and STS character quotas.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
$sel:callerArn:SimulatePrincipalPolicy', simulatePrincipalPolicy_callerArn - The ARN of the IAM user that you want to specify as the simulated caller
of the API operations. If you do not specify a CallerArn, it defaults
to the ARN of the user that you specify in PolicySourceArn, if you
specified a user. If you include both a PolicySourceArn (for example,
arn:aws:iam::123456789012:user/David) and a CallerArn (for example,
arn:aws:iam::123456789012:user/Bob), the result is that you simulate
calling the API operations as Bob, as if Bob had David's policies.
You can specify only the ARN of an IAM user. You cannot specify the ARN of an assumed role, federated user, or a service principal.
CallerArn is required if you include a ResourcePolicy and the
PolicySourceArn is not the ARN for an IAM user. This is required so
that the resource-based policy's Principal element has a value to use
in evaluating the policy.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
$sel:resourceHandlingOption:SimulatePrincipalPolicy', simulatePrincipalPolicy_resourceHandlingOption - Specifies the type of simulation to run. Different API operations that
support resource-based policies require different combinations of
resources. By specifying the type of simulation to run, you enable the
policy simulator to enforce the presence of the required resources to
ensure reliable simulation results. If your simulation does not match
one of the following scenarios, then you can omit this parameter. The
following list shows each of the supported scenario values and the
resources that you must define to run the simulation.
Each of the EC2 scenarios requires that you specify instance, image, and security group resources. If your scenario includes an EBS volume, then you must specify that volume as a resource. If the EC2 scenario includes VPC, then you must supply the network interface resource. If it includes an IP subnet, then you must specify the subnet resource. For more information on the EC2 scenario options, see Supported platforms in the Amazon EC2 User Guide.
EC2-Classic-InstanceStore
instance, image, security group
EC2-Classic-EBS
instance, image, security group, volume
EC2-VPC-InstanceStore
instance, image, security group, network interface
EC2-VPC-InstanceStore-Subnet
instance, image, security group, network interface, subnet
EC2-VPC-EBS
instance, image, security group, network interface, volume
EC2-VPC-EBS-Subnet
instance, image, security group, network interface, subnet, volume
$sel:resourceArns:SimulatePrincipalPolicy', simulatePrincipalPolicy_resourceArns - A list of ARNs of Amazon Web Services resources to include in the
simulation. If this parameter is not provided, then the value defaults
to * (all resources). Each API in the ActionNames parameter is
evaluated for each resource in this list. The simulation determines the
access result (allowed or denied) of each combination and reports it in
the response. You can simulate resources that don't exist in your
account.
The simulation does not automatically retrieve policies for the
specified resources. If you want to include a resource policy in the
simulation, then you must include the policy as a string in the
ResourcePolicy parameter.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
$sel:permissionsBoundaryPolicyInputList:SimulatePrincipalPolicy', simulatePrincipalPolicy_permissionsBoundaryPolicyInputList - The IAM permissions boundary policy to simulate. The permissions
boundary sets the maximum permissions that the entity can have. You can
input only one permissions boundary when you pass a policy to this
operation. An IAM entity can only have one permissions boundary in
effect at a time. For example, if a permissions boundary is attached to
an entity and you pass in a different permissions boundary policy using
this parameter, then the new permissions boundary policy is used for the
simulation. For more information about permissions boundaries, see
Permissions boundaries for IAM entities
in the IAM User Guide. The policy input is specified as a string
containing the complete, valid JSON text of a permissions boundary
policy.
The maximum length of the policy document that you can pass in this operation, including whitespace, is listed below. To view the maximum character counts of a managed policy with no whitespaces, see IAM and STS character quotas.
The regex pattern used to validate this parameter is a string of characters consisting of the following:
- Any printable ASCII character ranging from the space character
(
\u0020) through the end of the ASCII character range - The printable characters in the Basic Latin and Latin-1 Supplement
character set (through
\u00FF) - The special characters tab (
\u0009), line feed (\u000A), and carriage return (\u000D)
$sel:marker:SimulatePrincipalPolicy', simulatePrincipalPolicy_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:SimulatePrincipalPolicy', simulatePrincipalPolicy_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:contextEntries:SimulatePrincipalPolicy', simulatePrincipalPolicy_contextEntries - A list of context keys and corresponding values for the simulation to
use. Whenever a context key is evaluated in one of the simulated IAM
permissions policies, the corresponding value is supplied.
$sel:resourceOwner:SimulatePrincipalPolicy', simulatePrincipalPolicy_resourceOwner - An Amazon Web Services account ID that specifies the owner of any
simulated resource that does not identify its owner in the resource ARN.
Examples of resource ARNs include an S3 bucket or object. If
ResourceOwner is specified, it is also used as the account owner of
any ResourcePolicy included in the simulation. If the ResourceOwner
parameter is not specified, then the owner of the resources and the
resource policy defaults to the account of the identity provided in
CallerArn. This parameter is required only if you specify a
resource-based policy and account that owns the resource is different
from the account that owns the simulated calling user CallerArn.
$sel:policySourceArn:SimulatePrincipalPolicy', simulatePrincipalPolicy_policySourceArn - The Amazon Resource Name (ARN) of a user, group, or role whose policies
you want to include in the simulation. If you specify a user, group, or
role, the simulation includes all policies that are associated with that
entity. If you specify a user, the simulation also includes all policies
that are attached to any groups the user belongs to.
The maximum length of the policy document that you can pass in this operation, including whitespace, is listed below. To view the maximum character counts of a managed policy with no whitespaces, see IAM and STS character quotas.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
$sel:actionNames:SimulatePrincipalPolicy', simulatePrincipalPolicy_actionNames - A list of names of API operations to evaluate in the simulation. Each
operation is evaluated for each resource. Each operation must include
the service identifier, such as iam:CreateUser.
data SimulatePolicyResponse Source #
Contains the response to a successful SimulatePrincipalPolicy or SimulateCustomPolicy request.
See: newSimulatePolicyResponse smart constructor.
Constructors
| SimulatePolicyResponse' (Maybe [EvaluationResult]) (Maybe Text) (Maybe Bool) |
Instances
newSimulatePolicyResponse :: SimulatePolicyResponse Source #
Create a value of SimulatePolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:evaluationResults:SimulatePolicyResponse', simulatePolicyResponse_evaluationResults - The results of the simulation.
$sel:marker:SimulatePolicyResponse', simulatePolicyResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:SimulatePolicyResponse', simulatePolicyResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
GetOrganizationsAccessReport
data GetOrganizationsAccessReport Source #
See: newGetOrganizationsAccessReport smart constructor.
Constructors
| GetOrganizationsAccessReport' (Maybe SortKeyType) (Maybe Text) (Maybe Natural) Text |
Instances
newGetOrganizationsAccessReport Source #
Create a value of GetOrganizationsAccessReport with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:sortKey:GetOrganizationsAccessReport', getOrganizationsAccessReport_sortKey - The key that is used to sort the results. If you choose the namespace
key, the results are returned in alphabetical order. If you choose the
time key, the results are sorted numerically by the date and time.
$sel:marker:GetOrganizationsAccessReport', getOrganizationsAccessReport_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:GetOrganizationsAccessReport', getOrganizationsAccessReport_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:jobId:GetOrganizationsAccessReport', getOrganizationsAccessReport_jobId - The identifier of the request generated by the
GenerateOrganizationsAccessReport operation.
data GetOrganizationsAccessReportResponse Source #
See: newGetOrganizationsAccessReportResponse smart constructor.
Constructors
| GetOrganizationsAccessReportResponse' (Maybe Int) (Maybe ISO8601) (Maybe [AccessDetail]) (Maybe Int) (Maybe Text) (Maybe ErrorDetails) (Maybe Bool) Int JobStatusType ISO8601 |
Instances
newGetOrganizationsAccessReportResponse Source #
Arguments
| :: Int | |
| -> JobStatusType | |
| -> UTCTime | |
| -> GetOrganizationsAccessReportResponse |
Create a value of GetOrganizationsAccessReportResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:numberOfServicesNotAccessed:GetOrganizationsAccessReportResponse', getOrganizationsAccessReportResponse_numberOfServicesNotAccessed - The number of services that account principals are allowed but did not
attempt to access.
$sel:jobCompletionDate:GetOrganizationsAccessReportResponse', getOrganizationsAccessReportResponse_jobCompletionDate - The date and time,
in ISO 8601 date-time format, when the
generated report job was completed or failed.
This field is null if the job is still in progress, as indicated by a
job status value of IN_PROGRESS.
$sel:accessDetails:GetOrganizationsAccessReportResponse', getOrganizationsAccessReportResponse_accessDetails - An object that contains details about the most recent attempt to access
the service.
$sel:numberOfServicesAccessible:GetOrganizationsAccessReportResponse', getOrganizationsAccessReportResponse_numberOfServicesAccessible - The number of services that the applicable SCPs allow account principals
to access.
$sel:marker:GetOrganizationsAccessReport', getOrganizationsAccessReportResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:errorDetails:GetOrganizationsAccessReportResponse', getOrganizationsAccessReportResponse_errorDetails - Undocumented member.
$sel:isTruncated:GetOrganizationsAccessReportResponse', getOrganizationsAccessReportResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:GetOrganizationsAccessReportResponse', getOrganizationsAccessReportResponse_httpStatus - The response's http status code.
$sel:jobStatus:GetOrganizationsAccessReportResponse', getOrganizationsAccessReportResponse_jobStatus - The status of the job.
$sel:jobCreationDate:GetOrganizationsAccessReportResponse', getOrganizationsAccessReportResponse_jobCreationDate - The date and time,
in ISO 8601 date-time format, when the
report job was created.
GetPolicyVersion
data GetPolicyVersion Source #
See: newGetPolicyVersion smart constructor.
Constructors
| GetPolicyVersion' Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> GetPolicyVersion |
Create a value of GetPolicyVersion with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:policyArn:GetPolicyVersion', getPolicyVersion_policyArn - The Amazon Resource Name (ARN) of the managed policy that you want
information about.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
$sel:versionId:GetPolicyVersion', getPolicyVersion_versionId - Identifies the policy version to retrieve.
This parameter allows (through its regex pattern) a string of characters that consists of the lowercase letter 'v' followed by one or two digits, and optionally followed by a period '.' and a string of letters and digits.
data GetPolicyVersionResponse Source #
Contains the response to a successful GetPolicyVersion request.
See: newGetPolicyVersionResponse smart constructor.
Constructors
| GetPolicyVersionResponse' (Maybe PolicyVersion) Int |
Instances
newGetPolicyVersionResponse Source #
Create a value of GetPolicyVersionResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:policyVersion:GetPolicyVersionResponse', getPolicyVersionResponse_policyVersion - A structure containing details about the policy version.
$sel:httpStatus:GetPolicyVersionResponse', getPolicyVersionResponse_httpStatus - The response's http status code.
CreateServiceLinkedRole
data CreateServiceLinkedRole Source #
See: newCreateServiceLinkedRole smart constructor.
Instances
newCreateServiceLinkedRole Source #
Create a value of CreateServiceLinkedRole with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:customSuffix:CreateServiceLinkedRole', createServiceLinkedRole_customSuffix - A string that you provide, which is combined with the service-provided
prefix to form the complete role name. If you make multiple requests for
the same service, then you must supply a different CustomSuffix for
each request. Otherwise the request fails with a duplicate role name
error. For example, you could add -1 or -debug to the suffix.
Some services do not support the CustomSuffix parameter. If you
provide an optional suffix and the operation fails, try the operation
again without the suffix.
$sel:description:CreateServiceLinkedRole', createServiceLinkedRole_description - The description of the role.
$sel:aWSServiceName:CreateServiceLinkedRole', createServiceLinkedRole_aWSServiceName - The service principal for the Amazon Web Services service to which this
role is attached. You use a string similar to a URL but without the
http:// in front. For example: elasticbeanstalk.amazonaws.com.
Service principals are unique and case-sensitive. To find the exact service principal for your service-linked role, see Amazon Web Services services that work with IAM in the IAM User Guide. Look for the services that have Yes in the Service-Linked Role column. Choose the Yes link to view the service-linked role documentation for that service.
data CreateServiceLinkedRoleResponse Source #
See: newCreateServiceLinkedRoleResponse smart constructor.
Constructors
| CreateServiceLinkedRoleResponse' (Maybe Role) Int |
Instances
newCreateServiceLinkedRoleResponse Source #
Create a value of CreateServiceLinkedRoleResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:role':CreateServiceLinkedRoleResponse', createServiceLinkedRoleResponse_role - A Role object that contains details about the newly created role.
$sel:httpStatus:CreateServiceLinkedRoleResponse', createServiceLinkedRoleResponse_httpStatus - The response's http status code.
ListServiceSpecificCredentials
data ListServiceSpecificCredentials Source #
See: newListServiceSpecificCredentials smart constructor.
Constructors
| ListServiceSpecificCredentials' (Maybe Text) (Maybe Text) |
Instances
newListServiceSpecificCredentials :: ListServiceSpecificCredentials Source #
Create a value of ListServiceSpecificCredentials with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:ListServiceSpecificCredentials', listServiceSpecificCredentials_userName - The name of the user whose service-specific credentials you want
information about. If this value is not specified, then the operation
assumes the user whose credentials are used to call the operation.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:serviceName:ListServiceSpecificCredentials', listServiceSpecificCredentials_serviceName - Filters the returned results to only those for the specified Amazon Web
Services service. If not specified, then Amazon Web Services returns
service-specific credentials for all services.
data ListServiceSpecificCredentialsResponse Source #
See: newListServiceSpecificCredentialsResponse smart constructor.
Instances
newListServiceSpecificCredentialsResponse Source #
Arguments
| :: Int | |
| -> ListServiceSpecificCredentialsResponse |
Create a value of ListServiceSpecificCredentialsResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:serviceSpecificCredentials:ListServiceSpecificCredentialsResponse', listServiceSpecificCredentialsResponse_serviceSpecificCredentials - A list of structures that each contain details about a service-specific
credential.
$sel:httpStatus:ListServiceSpecificCredentialsResponse', listServiceSpecificCredentialsResponse_httpStatus - The response's http status code.
DeleteOpenIDConnectProvider
data DeleteOpenIDConnectProvider Source #
See: newDeleteOpenIDConnectProvider smart constructor.
Constructors
| DeleteOpenIDConnectProvider' Text |
Instances
newDeleteOpenIDConnectProvider Source #
Arguments
| :: Text | |
| -> DeleteOpenIDConnectProvider |
Create a value of DeleteOpenIDConnectProvider with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:openIDConnectProviderArn:DeleteOpenIDConnectProvider', deleteOpenIDConnectProvider_openIDConnectProviderArn - The Amazon Resource Name (ARN) of the IAM OpenID Connect provider
resource object to delete. You can get a list of OpenID Connect provider
resource ARNs by using the ListOpenIDConnectProviders operation.
data DeleteOpenIDConnectProviderResponse Source #
See: newDeleteOpenIDConnectProviderResponse smart constructor.
Constructors
| DeleteOpenIDConnectProviderResponse' | |
Instances
| Eq DeleteOpenIDConnectProviderResponse Source # | |
| Read DeleteOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.DeleteOpenIDConnectProvider | |
| Show DeleteOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.DeleteOpenIDConnectProvider Methods showsPrec :: Int -> DeleteOpenIDConnectProviderResponse -> ShowS # show :: DeleteOpenIDConnectProviderResponse -> String # showList :: [DeleteOpenIDConnectProviderResponse] -> ShowS # | |
| Generic DeleteOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.DeleteOpenIDConnectProvider Associated Types type Rep DeleteOpenIDConnectProviderResponse :: Type -> Type # | |
| NFData DeleteOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.DeleteOpenIDConnectProvider Methods rnf :: DeleteOpenIDConnectProviderResponse -> () # | |
| type Rep DeleteOpenIDConnectProviderResponse Source # | |
Defined in Amazonka.IAM.DeleteOpenIDConnectProvider | |
newDeleteOpenIDConnectProviderResponse :: DeleteOpenIDConnectProviderResponse Source #
Create a value of DeleteOpenIDConnectProviderResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
GetUser
See: newGetUser smart constructor.
Instances
| Eq GetUser Source # | |
| Read GetUser Source # | |
| Show GetUser Source # | |
| Generic GetUser Source # | |
| NFData GetUser Source # | |
Defined in Amazonka.IAM.GetUser | |
| Hashable GetUser Source # | |
Defined in Amazonka.IAM.GetUser | |
| AWSRequest GetUser Source # | |
Defined in Amazonka.IAM.GetUser Associated Types type AWSResponse GetUser # Methods request :: GetUser -> Request GetUser # response :: MonadResource m => Logger -> Service -> Proxy GetUser -> ClientResponse ClientBody -> m (Either Error (ClientResponse (AWSResponse GetUser))) # | |
| ToHeaders GetUser Source # | |
Defined in Amazonka.IAM.GetUser | |
| ToPath GetUser Source # | |
Defined in Amazonka.IAM.GetUser Methods toPath :: GetUser -> ByteString # | |
| ToQuery GetUser Source # | |
Defined in Amazonka.IAM.GetUser Methods toQuery :: GetUser -> QueryString # | |
| type Rep GetUser Source # | |
Defined in Amazonka.IAM.GetUser | |
| type AWSResponse GetUser Source # | |
Defined in Amazonka.IAM.GetUser | |
newGetUser :: GetUser Source #
Create a value of GetUser with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:GetUser', getUser_userName - The name of the user to get information about.
This parameter is optional. If it is not included, it defaults to the user making the request. This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data GetUserResponse Source #
Contains the response to a successful GetUser request.
See: newGetUserResponse smart constructor.
Constructors
| GetUserResponse' Int User |
Instances
Create a value of GetUserResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:httpStatus:GetUserResponse', getUserResponse_httpStatus - The response's http status code.
$sel:user:GetUserResponse', getUserResponse_user - A structure containing details about the IAM user.
Due to a service issue, password last used data does not include password use from May 3, 2018 22:50 PDT to May 23, 2018 14:08 PDT. This affects last sign-in dates shown in the IAM console and password last used dates in the IAM credential report, and returned by this operation. If users signed in during the affected time, the password last used date that is returned is the date the user last signed in before May 3, 2018. For users that signed in after May 23, 2018 14:08 PDT, the returned password last used date is accurate.
You can use password last used information to identify unused credentials for deletion. For example, you might delete users who did not sign in to Amazon Web Services in the last 90 days. In cases like this, we recommend that you adjust your evaluation window to include dates after May 23, 2018. Alternatively, if your users use access keys to access Amazon Web Services programmatically you can refer to access key last used information because it is accurate for all dates.
ListSigningCertificates (Paginated)
data ListSigningCertificates Source #
See: newListSigningCertificates smart constructor.
Instances
newListSigningCertificates :: ListSigningCertificates Source #
Create a value of ListSigningCertificates with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:ListSigningCertificates', listSigningCertificates_userName - The name of the IAM user whose signing certificates you want to examine.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:marker:ListSigningCertificates', listSigningCertificates_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListSigningCertificates', listSigningCertificates_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
data ListSigningCertificatesResponse Source #
Contains the response to a successful ListSigningCertificates request.
See: newListSigningCertificatesResponse smart constructor.
Constructors
| ListSigningCertificatesResponse' (Maybe Text) (Maybe Bool) Int [SigningCertificate] |
Instances
newListSigningCertificatesResponse Source #
Create a value of ListSigningCertificatesResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListSigningCertificates', listSigningCertificatesResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListSigningCertificatesResponse', listSigningCertificatesResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListSigningCertificatesResponse', listSigningCertificatesResponse_httpStatus - The response's http status code.
$sel:certificates:ListSigningCertificatesResponse', listSigningCertificatesResponse_certificates - A list of the user's signing certificate information.
DeleteSigningCertificate
data DeleteSigningCertificate Source #
See: newDeleteSigningCertificate smart constructor.
Constructors
| DeleteSigningCertificate' (Maybe Text) Text |
Instances
newDeleteSigningCertificate Source #
Create a value of DeleteSigningCertificate with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:DeleteSigningCertificate', deleteSigningCertificate_userName - The name of the user the signing certificate belongs to.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:certificateId:DeleteSigningCertificate', deleteSigningCertificate_certificateId - The ID of the signing certificate to delete.
The format of this parameter, as described by its regex pattern, is a string of characters that can be upper- or lower-cased letters or digits.
data DeleteSigningCertificateResponse Source #
See: newDeleteSigningCertificateResponse smart constructor.
Constructors
| DeleteSigningCertificateResponse' | |
Instances
| Eq DeleteSigningCertificateResponse Source # | |
| Read DeleteSigningCertificateResponse Source # | |
| Show DeleteSigningCertificateResponse Source # | |
Defined in Amazonka.IAM.DeleteSigningCertificate Methods showsPrec :: Int -> DeleteSigningCertificateResponse -> ShowS # | |
| Generic DeleteSigningCertificateResponse Source # | |
Defined in Amazonka.IAM.DeleteSigningCertificate Associated Types type Rep DeleteSigningCertificateResponse :: Type -> Type # | |
| NFData DeleteSigningCertificateResponse Source # | |
Defined in Amazonka.IAM.DeleteSigningCertificate Methods rnf :: DeleteSigningCertificateResponse -> () # | |
| type Rep DeleteSigningCertificateResponse Source # | |
Defined in Amazonka.IAM.DeleteSigningCertificate | |
newDeleteSigningCertificateResponse :: DeleteSigningCertificateResponse Source #
Create a value of DeleteSigningCertificateResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
UpdateSigningCertificate
data UpdateSigningCertificate Source #
See: newUpdateSigningCertificate smart constructor.
Constructors
| UpdateSigningCertificate' (Maybe Text) Text StatusType |
Instances
newUpdateSigningCertificate Source #
Arguments
| :: Text | |
| -> StatusType | |
| -> UpdateSigningCertificate |
Create a value of UpdateSigningCertificate with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:UpdateSigningCertificate', updateSigningCertificate_userName - The name of the IAM user the signing certificate belongs to.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:certificateId:UpdateSigningCertificate', updateSigningCertificate_certificateId - The ID of the signing certificate you want to update.
This parameter allows (through its regex pattern) a string of characters that can consist of any upper or lowercased letter or digit.
$sel:status:UpdateSigningCertificate', updateSigningCertificate_status - The status you want to assign to the certificate. Active means that
the certificate can be used for programmatic calls to Amazon Web
Services Inactive means that the certificate cannot be used.
data UpdateSigningCertificateResponse Source #
See: newUpdateSigningCertificateResponse smart constructor.
Constructors
| UpdateSigningCertificateResponse' | |
Instances
| Eq UpdateSigningCertificateResponse Source # | |
| Read UpdateSigningCertificateResponse Source # | |
| Show UpdateSigningCertificateResponse Source # | |
Defined in Amazonka.IAM.UpdateSigningCertificate Methods showsPrec :: Int -> UpdateSigningCertificateResponse -> ShowS # | |
| Generic UpdateSigningCertificateResponse Source # | |
Defined in Amazonka.IAM.UpdateSigningCertificate Associated Types type Rep UpdateSigningCertificateResponse :: Type -> Type # | |
| NFData UpdateSigningCertificateResponse Source # | |
Defined in Amazonka.IAM.UpdateSigningCertificate Methods rnf :: UpdateSigningCertificateResponse -> () # | |
| type Rep UpdateSigningCertificateResponse Source # | |
Defined in Amazonka.IAM.UpdateSigningCertificate | |
newUpdateSigningCertificateResponse :: UpdateSigningCertificateResponse Source #
Create a value of UpdateSigningCertificateResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
ListAttachedUserPolicies (Paginated)
data ListAttachedUserPolicies Source #
See: newListAttachedUserPolicies smart constructor.
Instances
newListAttachedUserPolicies Source #
Create a value of ListAttachedUserPolicies with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:pathPrefix:ListAttachedUserPolicies', listAttachedUserPolicies_pathPrefix - The path prefix for filtering the results. This parameter is optional.
If it is not included, it defaults to a slash (/), listing all
policies.
This parameter allows (through its
regex pattern) a string of characters
consisting of either a forward slash (/) by itself or a string that
must begin and end with forward slashes. In addition, it can contain any
ASCII character from the ! (\u0021) through the DEL character
(\u007F), including most punctuation characters, digits, and upper
and lowercased letters.
$sel:marker:ListAttachedUserPolicies', listAttachedUserPolicies_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListAttachedUserPolicies', listAttachedUserPolicies_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:userName:ListAttachedUserPolicies', listAttachedUserPolicies_userName - The name (friendly name, not ARN) of the user to list attached policies
for.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data ListAttachedUserPoliciesResponse Source #
Contains the response to a successful ListAttachedUserPolicies request.
See: newListAttachedUserPoliciesResponse smart constructor.
Constructors
| ListAttachedUserPoliciesResponse' (Maybe [AttachedPolicy]) (Maybe Text) (Maybe Bool) Int |
Instances
newListAttachedUserPoliciesResponse Source #
Create a value of ListAttachedUserPoliciesResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:attachedPolicies:ListAttachedUserPoliciesResponse', listAttachedUserPoliciesResponse_attachedPolicies - A list of the attached policies.
$sel:marker:ListAttachedUserPolicies', listAttachedUserPoliciesResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListAttachedUserPoliciesResponse', listAttachedUserPoliciesResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListAttachedUserPoliciesResponse', listAttachedUserPoliciesResponse_httpStatus - The response's http status code.
RemoveClientIDFromOpenIDConnectProvider
data RemoveClientIDFromOpenIDConnectProvider Source #
See: newRemoveClientIDFromOpenIDConnectProvider smart constructor.
Constructors
| RemoveClientIDFromOpenIDConnectProvider' Text Text |
Instances
newRemoveClientIDFromOpenIDConnectProvider Source #
Arguments
| :: Text |
|
| -> Text | |
| -> RemoveClientIDFromOpenIDConnectProvider |
Create a value of RemoveClientIDFromOpenIDConnectProvider with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:openIDConnectProviderArn:RemoveClientIDFromOpenIDConnectProvider', removeClientIDFromOpenIDConnectProvider_openIDConnectProviderArn - The Amazon Resource Name (ARN) of the IAM OIDC provider resource to
remove the client ID from. You can get a list of OIDC provider ARNs by
using the ListOpenIDConnectProviders operation.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
$sel:clientID:RemoveClientIDFromOpenIDConnectProvider', removeClientIDFromOpenIDConnectProvider_clientID - The client ID (also known as audience) to remove from the IAM OIDC
provider resource. For more information about client IDs, see
CreateOpenIDConnectProvider.
data RemoveClientIDFromOpenIDConnectProviderResponse Source #
See: newRemoveClientIDFromOpenIDConnectProviderResponse smart constructor.
Constructors
| RemoveClientIDFromOpenIDConnectProviderResponse' | |
Instances
newRemoveClientIDFromOpenIDConnectProviderResponse :: RemoveClientIDFromOpenIDConnectProviderResponse Source #
Create a value of RemoveClientIDFromOpenIDConnectProviderResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
AttachUserPolicy
data AttachUserPolicy Source #
See: newAttachUserPolicy smart constructor.
Constructors
| AttachUserPolicy' Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> AttachUserPolicy |
Create a value of AttachUserPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:AttachUserPolicy', attachUserPolicy_userName - The name (friendly name, not ARN) of the IAM user to attach the policy
to.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:policyArn:AttachUserPolicy', attachUserPolicy_policyArn - The Amazon Resource Name (ARN) of the IAM policy you want to attach.
For more information about ARNs, see Amazon Resource Names (ARNs) in the Amazon Web Services General Reference.
data AttachUserPolicyResponse Source #
See: newAttachUserPolicyResponse smart constructor.
Constructors
| AttachUserPolicyResponse' | |
Instances
newAttachUserPolicyResponse :: AttachUserPolicyResponse Source #
Create a value of AttachUserPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
TagPolicy
See: newTagPolicy smart constructor.
Constructors
| TagPolicy' Text [Tag] |
Instances
Create a value of TagPolicy with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:policyArn:TagPolicy', tagPolicy_policyArn - The ARN of the IAM customer managed policy to which you want to add
tags.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:tags:TagPolicy', tagPolicy_tags - The list of tags that you want to attach to the IAM customer managed
policy. Each tag consists of a key name and an associated value.
data TagPolicyResponse Source #
See: newTagPolicyResponse smart constructor.
Constructors
| TagPolicyResponse' | |
Instances
| Eq TagPolicyResponse Source # | |
Defined in Amazonka.IAM.TagPolicy Methods (==) :: TagPolicyResponse -> TagPolicyResponse -> Bool # (/=) :: TagPolicyResponse -> TagPolicyResponse -> Bool # | |
| Read TagPolicyResponse Source # | |
Defined in Amazonka.IAM.TagPolicy Methods readsPrec :: Int -> ReadS TagPolicyResponse # readList :: ReadS [TagPolicyResponse] # | |
| Show TagPolicyResponse Source # | |
Defined in Amazonka.IAM.TagPolicy Methods showsPrec :: Int -> TagPolicyResponse -> ShowS # show :: TagPolicyResponse -> String # showList :: [TagPolicyResponse] -> ShowS # | |
| Generic TagPolicyResponse Source # | |
Defined in Amazonka.IAM.TagPolicy Associated Types type Rep TagPolicyResponse :: Type -> Type # Methods from :: TagPolicyResponse -> Rep TagPolicyResponse x # to :: Rep TagPolicyResponse x -> TagPolicyResponse # | |
| NFData TagPolicyResponse Source # | |
Defined in Amazonka.IAM.TagPolicy Methods rnf :: TagPolicyResponse -> () # | |
| type Rep TagPolicyResponse Source # | |
newTagPolicyResponse :: TagPolicyResponse Source #
Create a value of TagPolicyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
CreateServiceSpecificCredential
data CreateServiceSpecificCredential Source #
See: newCreateServiceSpecificCredential smart constructor.
Constructors
| CreateServiceSpecificCredential' Text Text |
Instances
newCreateServiceSpecificCredential Source #
Arguments
| :: Text | |
| -> Text | |
| -> CreateServiceSpecificCredential |
Create a value of CreateServiceSpecificCredential with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:CreateServiceSpecificCredential', createServiceSpecificCredential_userName - The name of the IAM user that is to be associated with the credentials.
The new service-specific credentials have the same permissions as the
associated user except that they can be used only to access the
specified service.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:serviceName:CreateServiceSpecificCredential', createServiceSpecificCredential_serviceName - The name of the Amazon Web Services service that is to be associated
with the credentials. The service you specify here is the only service
that can be accessed using these credentials.
data CreateServiceSpecificCredentialResponse Source #
See: newCreateServiceSpecificCredentialResponse smart constructor.
Instances
newCreateServiceSpecificCredentialResponse Source #
Arguments
| :: Int | |
| -> CreateServiceSpecificCredentialResponse |
Create a value of CreateServiceSpecificCredentialResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:serviceSpecificCredential:CreateServiceSpecificCredentialResponse', createServiceSpecificCredentialResponse_serviceSpecificCredential - A structure that contains information about the newly created
service-specific credential.
This is the only time that the password for this credential set is available. It cannot be recovered later. Instead, you must reset the password with ResetServiceSpecificCredential.
$sel:httpStatus:CreateServiceSpecificCredentialResponse', createServiceSpecificCredentialResponse_httpStatus - The response's http status code.
ListVirtualMFADevices (Paginated)
data ListVirtualMFADevices Source #
See: newListVirtualMFADevices smart constructor.
Constructors
| ListVirtualMFADevices' (Maybe AssignmentStatusType) (Maybe Text) (Maybe Natural) |
Instances
newListVirtualMFADevices :: ListVirtualMFADevices Source #
Create a value of ListVirtualMFADevices with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:assignmentStatus:ListVirtualMFADevices', listVirtualMFADevices_assignmentStatus - The status (Unassigned or Assigned) of the devices to list. If you
do not specify an AssignmentStatus, the operation defaults to Any,
which lists both assigned and unassigned virtual MFA devices.,
$sel:marker:ListVirtualMFADevices', listVirtualMFADevices_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListVirtualMFADevices', listVirtualMFADevices_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
data ListVirtualMFADevicesResponse Source #
Contains the response to a successful ListVirtualMFADevices request.
See: newListVirtualMFADevicesResponse smart constructor.
Constructors
| ListVirtualMFADevicesResponse' (Maybe Text) (Maybe Bool) Int [VirtualMFADevice] |
Instances
newListVirtualMFADevicesResponse Source #
Create a value of ListVirtualMFADevicesResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListVirtualMFADevices', listVirtualMFADevicesResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListVirtualMFADevicesResponse', listVirtualMFADevicesResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListVirtualMFADevicesResponse', listVirtualMFADevicesResponse_httpStatus - The response's http status code.
$sel:virtualMFADevices:ListVirtualMFADevicesResponse', listVirtualMFADevicesResponse_virtualMFADevices - The list of virtual MFA devices in the current account that match the
AssignmentStatus value that was passed in the request.
ResyncMFADevice
data ResyncMFADevice Source #
See: newResyncMFADevice smart constructor.
Constructors
| ResyncMFADevice' Text Text Text Text |
Instances
Arguments
| :: Text | |
| -> Text | |
| -> Text | |
| -> Text | |
| -> ResyncMFADevice |
Create a value of ResyncMFADevice with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:ResyncMFADevice', resyncMFADevice_userName - The name of the user whose MFA device you want to resynchronize.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:serialNumber:ResyncMFADevice', resyncMFADevice_serialNumber - Serial number that uniquely identifies the MFA device.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:authenticationCode1:ResyncMFADevice', resyncMFADevice_authenticationCode1 - An authentication code emitted by the device.
The format for this parameter is a sequence of six digits.
$sel:authenticationCode2:ResyncMFADevice', resyncMFADevice_authenticationCode2 - A subsequent authentication code emitted by the device.
The format for this parameter is a sequence of six digits.
data ResyncMFADeviceResponse Source #
See: newResyncMFADeviceResponse smart constructor.
Constructors
| ResyncMFADeviceResponse' | |
Instances
| Eq ResyncMFADeviceResponse Source # | |
Defined in Amazonka.IAM.ResyncMFADevice Methods (==) :: ResyncMFADeviceResponse -> ResyncMFADeviceResponse -> Bool # (/=) :: ResyncMFADeviceResponse -> ResyncMFADeviceResponse -> Bool # | |
| Read ResyncMFADeviceResponse Source # | |
Defined in Amazonka.IAM.ResyncMFADevice | |
| Show ResyncMFADeviceResponse Source # | |
Defined in Amazonka.IAM.ResyncMFADevice Methods showsPrec :: Int -> ResyncMFADeviceResponse -> ShowS # show :: ResyncMFADeviceResponse -> String # showList :: [ResyncMFADeviceResponse] -> ShowS # | |
| Generic ResyncMFADeviceResponse Source # | |
Defined in Amazonka.IAM.ResyncMFADevice Associated Types type Rep ResyncMFADeviceResponse :: Type -> Type # Methods from :: ResyncMFADeviceResponse -> Rep ResyncMFADeviceResponse x # to :: Rep ResyncMFADeviceResponse x -> ResyncMFADeviceResponse # | |
| NFData ResyncMFADeviceResponse Source # | |
Defined in Amazonka.IAM.ResyncMFADevice Methods rnf :: ResyncMFADeviceResponse -> () # | |
| type Rep ResyncMFADeviceResponse Source # | |
newResyncMFADeviceResponse :: ResyncMFADeviceResponse Source #
Create a value of ResyncMFADeviceResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
TagServerCertificate
data TagServerCertificate Source #
See: newTagServerCertificate smart constructor.
Constructors
| TagServerCertificate' Text [Tag] |
Instances
newTagServerCertificate Source #
Create a value of TagServerCertificate with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:serverCertificateName:TagServerCertificate', tagServerCertificate_serverCertificateName - The name of the IAM server certificate to which you want to add tags.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:tags:TagServerCertificate', tagServerCertificate_tags - The list of tags that you want to attach to the IAM server certificate.
Each tag consists of a key name and an associated value.
data TagServerCertificateResponse Source #
See: newTagServerCertificateResponse smart constructor.
Constructors
| TagServerCertificateResponse' | |
Instances
| Eq TagServerCertificateResponse Source # | |
Defined in Amazonka.IAM.TagServerCertificate Methods (==) :: TagServerCertificateResponse -> TagServerCertificateResponse -> Bool # (/=) :: TagServerCertificateResponse -> TagServerCertificateResponse -> Bool # | |
| Read TagServerCertificateResponse Source # | |
| Show TagServerCertificateResponse Source # | |
Defined in Amazonka.IAM.TagServerCertificate Methods showsPrec :: Int -> TagServerCertificateResponse -> ShowS # show :: TagServerCertificateResponse -> String # showList :: [TagServerCertificateResponse] -> ShowS # | |
| Generic TagServerCertificateResponse Source # | |
Defined in Amazonka.IAM.TagServerCertificate Associated Types type Rep TagServerCertificateResponse :: Type -> Type # | |
| NFData TagServerCertificateResponse Source # | |
Defined in Amazonka.IAM.TagServerCertificate Methods rnf :: TagServerCertificateResponse -> () # | |
| type Rep TagServerCertificateResponse Source # | |
Defined in Amazonka.IAM.TagServerCertificate | |
newTagServerCertificateResponse :: TagServerCertificateResponse Source #
Create a value of TagServerCertificateResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
DeleteAccessKey
data DeleteAccessKey Source #
See: newDeleteAccessKey smart constructor.
Constructors
| DeleteAccessKey' (Maybe Text) AccessKey |
Instances
Arguments
| :: AccessKey | |
| -> DeleteAccessKey |
Create a value of DeleteAccessKey with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:DeleteAccessKey', deleteAccessKey_userName - The name of the user whose access key pair you want to delete.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:accessKeyId:DeleteAccessKey', deleteAccessKey_accessKeyId - The access key ID for the access key ID and secret access key you want
to delete.
This parameter allows (through its regex pattern) a string of characters that can consist of any upper or lowercased letter or digit.
data DeleteAccessKeyResponse Source #
See: newDeleteAccessKeyResponse smart constructor.
Constructors
| DeleteAccessKeyResponse' | |
Instances
| Eq DeleteAccessKeyResponse Source # | |
Defined in Amazonka.IAM.DeleteAccessKey Methods (==) :: DeleteAccessKeyResponse -> DeleteAccessKeyResponse -> Bool # (/=) :: DeleteAccessKeyResponse -> DeleteAccessKeyResponse -> Bool # | |
| Read DeleteAccessKeyResponse Source # | |
Defined in Amazonka.IAM.DeleteAccessKey | |
| Show DeleteAccessKeyResponse Source # | |
Defined in Amazonka.IAM.DeleteAccessKey Methods showsPrec :: Int -> DeleteAccessKeyResponse -> ShowS # show :: DeleteAccessKeyResponse -> String # showList :: [DeleteAccessKeyResponse] -> ShowS # | |
| Generic DeleteAccessKeyResponse Source # | |
Defined in Amazonka.IAM.DeleteAccessKey Associated Types type Rep DeleteAccessKeyResponse :: Type -> Type # Methods from :: DeleteAccessKeyResponse -> Rep DeleteAccessKeyResponse x # to :: Rep DeleteAccessKeyResponse x -> DeleteAccessKeyResponse # | |
| NFData DeleteAccessKeyResponse Source # | |
Defined in Amazonka.IAM.DeleteAccessKey Methods rnf :: DeleteAccessKeyResponse -> () # | |
| type Rep DeleteAccessKeyResponse Source # | |
newDeleteAccessKeyResponse :: DeleteAccessKeyResponse Source #
Create a value of DeleteAccessKeyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
UpdateAccessKey
data UpdateAccessKey Source #
See: newUpdateAccessKey smart constructor.
Constructors
| UpdateAccessKey' (Maybe Text) AccessKey StatusType |
Instances
Arguments
| :: AccessKey | |
| -> StatusType | |
| -> UpdateAccessKey |
Create a value of UpdateAccessKey with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:UpdateAccessKey', updateAccessKey_userName - The name of the user whose key you want to update.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:accessKeyId:UpdateAccessKey', updateAccessKey_accessKeyId - The access key ID of the secret access key you want to update.
This parameter allows (through its regex pattern) a string of characters that can consist of any upper or lowercased letter or digit.
$sel:status:UpdateAccessKey', updateAccessKey_status - The status you want to assign to the secret access key. Active means
that the key can be used for programmatic calls to Amazon Web Services,
while Inactive means that the key cannot be used.
data UpdateAccessKeyResponse Source #
See: newUpdateAccessKeyResponse smart constructor.
Constructors
| UpdateAccessKeyResponse' | |
Instances
| Eq UpdateAccessKeyResponse Source # | |
Defined in Amazonka.IAM.UpdateAccessKey Methods (==) :: UpdateAccessKeyResponse -> UpdateAccessKeyResponse -> Bool # (/=) :: UpdateAccessKeyResponse -> UpdateAccessKeyResponse -> Bool # | |
| Read UpdateAccessKeyResponse Source # | |
Defined in Amazonka.IAM.UpdateAccessKey | |
| Show UpdateAccessKeyResponse Source # | |
Defined in Amazonka.IAM.UpdateAccessKey Methods showsPrec :: Int -> UpdateAccessKeyResponse -> ShowS # show :: UpdateAccessKeyResponse -> String # showList :: [UpdateAccessKeyResponse] -> ShowS # | |
| Generic UpdateAccessKeyResponse Source # | |
Defined in Amazonka.IAM.UpdateAccessKey Associated Types type Rep UpdateAccessKeyResponse :: Type -> Type # Methods from :: UpdateAccessKeyResponse -> Rep UpdateAccessKeyResponse x # to :: Rep UpdateAccessKeyResponse x -> UpdateAccessKeyResponse # | |
| NFData UpdateAccessKeyResponse Source # | |
Defined in Amazonka.IAM.UpdateAccessKey Methods rnf :: UpdateAccessKeyResponse -> () # | |
| type Rep UpdateAccessKeyResponse Source # | |
newUpdateAccessKeyResponse :: UpdateAccessKeyResponse Source #
Create a value of UpdateAccessKeyResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
ListUserTags (Paginated)
data ListUserTags Source #
See: newListUserTags smart constructor.
Instances
Arguments
| :: Text | |
| -> ListUserTags |
Create a value of ListUserTags with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListUserTags', listUserTags_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListUserTags', listUserTags_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
$sel:userName:ListUserTags', listUserTags_userName - The name of the IAM user whose tags you want to see.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
data ListUserTagsResponse Source #
See: newListUserTagsResponse smart constructor.
Instances
newListUserTagsResponse Source #
Arguments
| :: Int | |
| -> ListUserTagsResponse |
Create a value of ListUserTagsResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListUserTags', listUserTagsResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListUserTagsResponse', listUserTagsResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListUserTagsResponse', listUserTagsResponse_httpStatus - The response's http status code.
$sel:tags:ListUserTagsResponse', listUserTagsResponse_tags - The list of tags that are currently attached to the user. Each tag
consists of a key name and an associated value. If no tags are attached
to the specified resource, the response contains an empty list.
ListAccessKeys (Paginated)
data ListAccessKeys Source #
See: newListAccessKeys smart constructor.
Instances
newListAccessKeys :: ListAccessKeys Source #
Create a value of ListAccessKeys with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:userName:ListAccessKeys', listAccessKeys_userName - The name of the user.
This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-
$sel:marker:ListAccessKeys', listAccessKeys_marker - Use this parameter only when paginating results and only after you
receive a response indicating that the results are truncated. Set it to
the value of the Marker element in the response that you received to
indicate where the next call should start.
$sel:maxItems:ListAccessKeys', listAccessKeys_maxItems - Use this only when paginating results to indicate the maximum number of
items you want in the response. If additional items exist beyond the
maximum you specify, the IsTruncated response element is true.
If you do not include this parameter, the number of items defaults to
100. Note that IAM might return fewer results, even when there are more
results available. In that case, the IsTruncated response element
returns true, and Marker contains a value to include in the
subsequent call that tells the service where to continue from.
data ListAccessKeysResponse Source #
Contains the response to a successful ListAccessKeys request.
See: newListAccessKeysResponse smart constructor.
Constructors
| ListAccessKeysResponse' (Maybe Text) (Maybe Bool) Int [AccessKeyMetadata] |
Instances
newListAccessKeysResponse Source #
Create a value of ListAccessKeysResponse with all optional fields omitted.
Use generic-lens or optics to modify other optional fields.
The following record fields are available, with the corresponding lenses provided for backwards compatibility:
$sel:marker:ListAccessKeys', listAccessKeysResponse_marker - When IsTruncated is true, this element is present and contains the
value to use for the Marker parameter in a subsequent pagination
request.
$sel:isTruncated:ListAccessKeysResponse', listAccessKeysResponse_isTruncated - A flag that indicates whether there are more items to return. If your
results were truncated, you can make a subsequent pagination request
using the Marker request parameter to retrieve more items. Note that
IAM might return fewer than the MaxItems number of results even when
there are more results available. We recommend that you check
IsTruncated after every call to ensure that you receive all your
results.
$sel:httpStatus:ListAccessKeysResponse', listAccessKeysResponse_httpStatus - The response's http status code.
$sel:accessKeyMetadata:ListAccessKeysResponse', listAccessKeysResponse_accessKeyMetadata - A list of objects containing metadata about the access keys.
GetRolePolicy
data GetRolePolicy Source #
See: newGetRolePolicy smart constructor.
Constructors
| GetRolePolicy' Text Text |
Instances
| Eq GetRolePolicy Source # | |
Defined in Amazonka.IAM.GetRolePolicy Methods (==) :: GetRolePolicy -> GetRolePolicy -> Bool # (/=) :: GetRolePolicy -> GetRolePolicy -> Bool # | |
| Read GetRolePolicy Source # | |
Defined in Amazonka.IAM.GetRolePolicy Methods readsPrec :: Int -> ReadS GetRolePolicy # readList :: ReadS [GetRolePolicy] # | |
| Show GetRolePolicy Source # | |