Policy: AWS > SQS > Trusted Organizations [Default]
List of AWS Organization IDs that users may share resources with.
Note that Trusted Access > Accounts and Trusted Access > Organizations are evaluated independently. To have access, an AWS principal must be allowed in Trusted Access > Accounts AND be a member of an Organization that is allowed in Trusted Access > Organizations.
Note: Trusted Access > Organization Restrictions are ONLY applied to AWS principals. Services and Federated principals do NOT contain the aws:PrincipalOrgId condition key, and thus cannot be validated against the Organization.example: - "o-333333333" - "o-c3a5y4wd52"
Targets
This policy targets the following resource types:
Policy Specification
Schema Type | |
|---|---|
Default template | |
Default template input | |
Category
In Your Workspace
Developers
- tmod:@turbot/turbot#/control/categories/securityTrustedAccess
- tmod:@turbot/aws-sqs#/policy/types/sqsPolicyTrustedOrganizations
- turbot graphql policy-type --id "tmod:@turbot/aws-sqs#/policy/types/sqsPolicyTrustedOrganizations"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/aws-sqs#/policy/types/sqsPolicyTrustedOrganizations"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI