Las traducciones son generadas a través de traducción automática. En caso de conflicto entre la traducción y la version original de inglés, prevalecerá la version en inglés.
CloudWatchApplicationSignalsReadOnlyAccess
Descripción: Proporciona acceso de solo lectura al servicio CloudWatch Application Signals y acceso limitado a las dependencias necesarias para utilizar este servicio
CloudWatchApplicationSignalsReadOnlyAccess
es una política administrada de AWS.
Uso de la política
Puede asociar CloudWatchApplicationSignalsReadOnlyAccess
a los usuarios, grupos y roles.
Información de la política
-
Tipo: política gestionada AWS
-
Hora de creación: 06 de junio de 2024 a las 22:48 h UTC
-
Hora editada: 29 de septiembre de 2025 a las 16:19 UTC
-
ARN:
arn:aws:iam::aws:policy/CloudWatchApplicationSignalsReadOnlyAccess
Versión de la política
Versión de la política: v2 (predeterminada)
La versión predeterminada de la política define qué permisos tendrá. Cuando un usuario o un rol con la política solicita el acceso a un AWS recurso, AWS comprueba la versión predeterminada de la política para determinar si permite la solicitud.
Documento de política JSON
{ "Version" : "2012-10-17", "Statement" : [ { "Sid" : "CloudWatchApplicationSignalsReadOnlyAccessPermissions", "Effect" : "Allow", "Action" : [ "application-signals:BatchGetServiceLevelObjectiveBudgetReport", "application-signals:GetService", "application-signals:GetServiceLevelObjective", "application-signals:ListServiceLevelObjectives", "application-signals:ListServiceDependencies", "application-signals:ListServiceDependents", "application-signals:ListServiceOperations", "application-signals:ListServices", "application-signals:ListTagsForResource", "application-signals:ListServiceStates", "application-signals:ListAuditFindings", "application-signals:ListGroupingAttributeDefinitions" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsGetRolePermissions", "Effect" : "Allow", "Action" : "iam:GetRole", "Resource" : "arn:aws:iam::*:role/aws-service-role/application-signals.cloudwatch.amazonaws.com/AWSServiceRoleForCloudWatchApplicationSignals" }, { "Sid" : "CloudWatchApplicationSignalsLogsPermissions", "Effect" : "Allow", "Action" : [ "logs:StartQuery", "logs:StopQuery", "logs:GetQueryResults", "logs:DescribeLogGroups" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsAlarmsReadPermissions", "Effect" : "Allow", "Action" : [ "cloudwatch:DescribeAlarms" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsMetricsReadPermissions", "Effect" : "Allow", "Action" : [ "cloudwatch:GetMetricData", "cloudwatch:ListMetrics" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsSyntheticsReadPermissions", "Effect" : "Allow", "Action" : [ "synthetics:DescribeCanaries", "synthetics:DescribeCanariesLastRun", "synthetics:GetCanaryRuns" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsRumReadPermissions", "Effect" : "Allow", "Action" : [ "rum:BatchGetRumMetricDefinitions", "rum:GetAppMonitor", "rum:GetAppMonitorData", "rum:ListAppMonitors" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsXrayTracePermissions", "Effect" : "Allow", "Action" : [ "xray:GetTraceSummaries" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsXrayReadPermissions", "Effect" : "Allow", "Action" : [ "xray:StartTraceRetrieval", "xray:ListRetrievedTraces", "xray:BatchGetTraces", "xray:GetTraceSegmentDestination" ], "Resource" : "*", "Condition" : { "ForAnyValue:StringEquals" : { "aws:CalledVia" : [ "application-signals.cloudwatch.amazonaws.com" ] } } }, { "Sid" : "CloudWatchApplicationSignalsCloudTrailPermissions", "Effect" : "Allow", "Action" : [ "cloudtrail:GetChannel" ], "Resource" : "arn:aws:cloudtrail:*:*:channel/aws-service-channel/application-signals/*" }, { "Sid" : "CloudWatchApplicationSignalsCloudTrailListPermissions", "Effect" : "Allow", "Action" : [ "cloudtrail:ListChannels" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsServiceQuotaPermissions", "Effect" : "Allow", "Action" : [ "servicequotas:GetServiceQuota" ], "Resource" : [ "arn:aws:servicequotas:*:*:s3/*", "arn:aws:servicequotas:*:*:dynamodb/*", "arn:aws:servicequotas:*:*:kinesis/*", "arn:aws:servicequotas:*:*:sns/*", "arn:aws:servicequotas:*:*:bedrock/*", "arn:aws:servicequotas:*:*:lambda/*", "arn:aws:servicequotas:*:*:fargate/*", "arn:aws:servicequotas:*:*:elasticloadbalancing/*", "arn:aws:servicequotas:*:*:ec2/*" ] } ] }