Administrator
- Administrator
- All Products
<organization ID>/<serverless runtime environment ID>
"Version": "2012-10-17", "Id": "efs-policy-wizard-<EFS policy wizard ID>", "Statement": [ { "Sid": "efs-statement-<EFS statement ID>", "Effect": "Allow", "Principal": { "AWS": "arn:aws:iam::<ARN ID>:role/<serverless role>" }, "Action": [ "elasticfilesystem:ClientWrite", "elasticfilesystem:ClientMount", "elasticfilesystem:ClientRootAccess" ], "Resource": "arn:aws:elasticfilesystem:us-west-2:<ARN ID>:file-system/fs-12345", "Condition": { "Bool": { "elasticfilesystem:AccessedViaMountTarget": "true" } } }, { "Sid": "efs-statement-<EFS statement ID>", "Effect": "Deny", "Principal": { "AWS": "*" }, "Action": "*", "Resource": "arn:aws:elasticfilesystem:us-west-2:123456789:file-system/fs-12345", "Condition": { "Bool": { "aws:SecureTransport": "false" } } } ] }
Action | Description |
|---|---|
elasticfilesystem:ClientMount | Provides read-only access to a file system. |
elasticfilesystem:ClientWrite | Provides write permissions on a file system. |
elasticfilesystem:ClientRootAccess | Provides use of the root user when accessing a file system.
|