

Terjemahan disediakan oleh mesin penerjemah. Jika konten terjemahan yang diberikan bertentangan dengan versi bahasa Inggris aslinya, utamakan versi bahasa Inggris.

# Izin API ACM: Referensi tindakan dan sumber daya
<a name="authen-apipermissions"></a>

Saat mengatur kontrol akses dan menulis kebijakan izin yang dapat dilampirkan ke pengguna atau peran IAM, Anda dapat menggunakan tabel berikut sebagai referensi. Kolom pertama dalam tabel mencantumkan setiap operasi AWS Certificate Manager API. Anda menentukan tindakan di elemen `Action` kebijakan. Kolom yang tersisa memberikan informasi tambahan: 

 Anda dapat menggunakan elemen kebijakan IAM dalam kebijakan ACM Anda untuk menyatakan kondisi. Untuk daftar lengkapnya, lihat [Kunci yang Tersedia](https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_elements.html#AvailableKeys) di *Panduan Pengguna IAM*. 

**catatan**  
 Untuk menentukan tindakan, gunakan awalan `acm:` diikuti dengan nama operasi API (misalnya, `acm:RequestCertificate`). 

Gunakan bilah gulir untuk melihat seluruh tabel.


**Operasi dan izin ACM API**  

| Operasi API ACM | Izin yang Diperlukan (Operasi API) | Sumber daya | 
| --- | --- | --- | 
|  [AddTagsToCertificate](https://docs.aws.amazon.com/acm/latest/APIReference/API_AddTagsToCertificate.html)  |  `acm:AddTagsToCertificate`  |  `arn:aws:acm:region:account:certificate/certificate_ID`  | 
|  [DeleteCertificate](https://docs.aws.amazon.com/acm/latest/APIReference/API_DeleteCertificate.html)  |  `acm:DeleteCertificate`  |  `arn:aws:acm:region:account:certificate/certificate_ID`  | 
|  [DescribeCertificate](https://docs.aws.amazon.com/acm/latest/APIReference/API_DescribeCertificate.html)  |  `acm:DescribeCertificate`  |  `arn:aws:acm:region:account:certificate/certificate_ID`  | 
|  [ExportCertificate](https://docs.aws.amazon.com/acm/latest/APIReference/API_ExportCertificate.html)  |  `acm:ExportCertificate`  |  `arn:aws:acm:region:account:certificate/certificate_ID`  | 
|  [GetAccountConfiguration](https://docs.aws.amazon.com/acm/latest/APIReference/API_GetAccountConfiguration.html)  |  `acm:GetAccountConfiguration`  |  `*`  | 
|  [GetCertificate](https://docs.aws.amazon.com/acm/latest/APIReference/API_GetCertificate.html)  |  `acm:GetCertificate`  |  `arn:aws:acm:region:account:certificate/certificate_ID`  | 
|  [ImportCertificate](https://docs.aws.amazon.com/acm/latest/APIReference/API_ImportCertificate.html)  |  `acm:ImportCertificate`  |  `arn:aws:acm:region:account:certificate/*` atau `*`  | 
|  [ListCertificates](https://docs.aws.amazon.com/acm/latest/APIReference/API_ListCertificates.html)  |  `acm:ListCertificates`  |  `*`  | 
|  [ListTagsForCertificate](https://docs.aws.amazon.com/acm/latest/APIReference/API_ListTagsForCertificate.html)  |  `acm:ListTagsForCertificate`  |  `arn:aws:acm:region:account:certificate/certificate_ID`  | 
|  [PutAccountConfiguration](https://docs.aws.amazon.com/acm/latest/APIReference/API_PutAccountConfiguration.html)  |  `acm:PutAccountConfiguration`  |  `*`  | 
|  [RemoveTagsFromCertificate](https://docs.aws.amazon.com/acm/latest/APIReference/API_RemoveTagsFromCertificate.html)  |  `acm:RemoveTagsFromCertificate`  |  `arn:aws:acm:region:account:certificate/certificate_ID`  | 
|  [RequestCertificate](https://docs.aws.amazon.com/acm/latest/APIReference/API_RequestCertificate.html)  |  `acm:RequestCertificate`  |  `arn:aws:acm:region:account:certificate/*` atau `*`  | 
|  [ResendValidationEmail](https://docs.aws.amazon.com/acm/latest/APIReference/API_ResendValidationEmail.html)  |  `acm:ResendValidationEmail`  | arn:aws:acm:region:account:certificate/certificate\$1ID | 
|  [UpdateCertificateOptions](https://docs.aws.amazon.com/acm/latest/APIReference/API_UpdateCertificateOptions.html)  |  `acm:UpdateCertificateOptions`  |  `arn:aws:acm:region:account:certificate/certificate_ID`  | 