Policy: AWS > DynamoDB > Table > Approved > Regions
A list of AWS regions in which AWS DynamoDB tables are approved for use.
The expected format is an array of regions names. You may use the '*' and '?' wildcard characters.
This policy will be evaluated by the Approved control. If an AWS DynamoDB table is created in a region that is not in the approved list, it will be subject to the action specified in the AWS > DynamoDB > Table > Approved
policy.
See Approved for more information.
Note: It is recommended to include approved regions in this policy in the AWS > DynamoDB > Permissions > Lockdown > Table Approved Regions
policy as well, to ensure that the lockdown policy will not restrict these approved regions.
Resource Types
This policy targets the following resource types:
Primary Policy
This policy is used with the following primary policy:
Controls
Policy Specification
Default template |
|
---|---|
Default template input |
|
Category
In Your Workspace
Developers
- tmod:@turbot/turbot#/control/categories/resourceApproved
- tmod:@turbot/aws-dynamodb#/policy/types/tableApprovedRegions
- turbot graphql policy-type --id "tmod:@turbot/aws-dynamodb#/policy/types/tableApprovedRegions"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/aws-dynamodb#/policy/types/tableApprovedRegions"
Get Policy TypeGet Policy Settings