Le traduzioni sono generate tramite traduzione automatica. In caso di conflitto tra il contenuto di una traduzione e la versione originale in Inglese, quest'ultima prevarrà.
CloudWatchApplicationSignalsReadOnlyAccess
Descrizione: fornisce l'accesso in sola lettura al servizio CloudWatch Application Signals e l'accesso mirato alle dipendenze necessarie per utilizzare questo servizio
CloudWatchApplicationSignalsReadOnlyAccess
è una politica AWS gestita.
Utilizzo di questa politica
Puoi collegarti CloudWatchApplicationSignalsReadOnlyAccess
ai tuoi utenti, gruppi e ruoli.
Dettagli della policy
-
Tipo: politica AWS gestita
-
Ora di creazione: 6 giugno 2024, 22:48 UTC
-
Ora modificata: 29 settembre 2025, 16:19 UTC
-
ARN:
arn:aws:iam::aws:policy/CloudWatchApplicationSignalsReadOnlyAccess
Versione della politica
Versione della politica: v2 (predefinita)
La versione predefinita della politica è la versione che definisce le autorizzazioni per la politica. Quando un utente o un ruolo con la politica effettua una richiesta di accesso a una AWS risorsa, AWS controlla la versione predefinita della politica per determinare se consentire la richiesta.
Documento di policy JSON
{ "Version" : "2012-10-17", "Statement" : [ { "Sid" : "CloudWatchApplicationSignalsReadOnlyAccessPermissions", "Effect" : "Allow", "Action" : [ "application-signals:BatchGetServiceLevelObjectiveBudgetReport", "application-signals:GetService", "application-signals:GetServiceLevelObjective", "application-signals:ListServiceLevelObjectives", "application-signals:ListServiceDependencies", "application-signals:ListServiceDependents", "application-signals:ListServiceOperations", "application-signals:ListServices", "application-signals:ListTagsForResource", "application-signals:ListServiceStates", "application-signals:ListAuditFindings", "application-signals:ListGroupingAttributeDefinitions" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsGetRolePermissions", "Effect" : "Allow", "Action" : "iam:GetRole", "Resource" : "arn:aws:iam::*:role/aws-service-role/application-signals.cloudwatch.amazonaws.com/AWSServiceRoleForCloudWatchApplicationSignals" }, { "Sid" : "CloudWatchApplicationSignalsLogsPermissions", "Effect" : "Allow", "Action" : [ "logs:StartQuery", "logs:StopQuery", "logs:GetQueryResults", "logs:DescribeLogGroups" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsAlarmsReadPermissions", "Effect" : "Allow", "Action" : [ "cloudwatch:DescribeAlarms" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsMetricsReadPermissions", "Effect" : "Allow", "Action" : [ "cloudwatch:GetMetricData", "cloudwatch:ListMetrics" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsSyntheticsReadPermissions", "Effect" : "Allow", "Action" : [ "synthetics:DescribeCanaries", "synthetics:DescribeCanariesLastRun", "synthetics:GetCanaryRuns" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsRumReadPermissions", "Effect" : "Allow", "Action" : [ "rum:BatchGetRumMetricDefinitions", "rum:GetAppMonitor", "rum:GetAppMonitorData", "rum:ListAppMonitors" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsXrayTracePermissions", "Effect" : "Allow", "Action" : [ "xray:GetTraceSummaries" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsXrayReadPermissions", "Effect" : "Allow", "Action" : [ "xray:StartTraceRetrieval", "xray:ListRetrievedTraces", "xray:BatchGetTraces", "xray:GetTraceSegmentDestination" ], "Resource" : "*", "Condition" : { "ForAnyValue:StringEquals" : { "aws:CalledVia" : [ "application-signals.cloudwatch.amazonaws.com" ] } } }, { "Sid" : "CloudWatchApplicationSignalsCloudTrailPermissions", "Effect" : "Allow", "Action" : [ "cloudtrail:GetChannel" ], "Resource" : "arn:aws:cloudtrail:*:*:channel/aws-service-channel/application-signals/*" }, { "Sid" : "CloudWatchApplicationSignalsCloudTrailListPermissions", "Effect" : "Allow", "Action" : [ "cloudtrail:ListChannels" ], "Resource" : "*" }, { "Sid" : "CloudWatchApplicationSignalsServiceQuotaPermissions", "Effect" : "Allow", "Action" : [ "servicequotas:GetServiceQuota" ], "Resource" : [ "arn:aws:servicequotas:*:*:s3/*", "arn:aws:servicequotas:*:*:dynamodb/*", "arn:aws:servicequotas:*:*:kinesis/*", "arn:aws:servicequotas:*:*:sns/*", "arn:aws:servicequotas:*:*:bedrock/*", "arn:aws:servicequotas:*:*:lambda/*", "arn:aws:servicequotas:*:*:fargate/*", "arn:aws:servicequotas:*:*:elasticloadbalancing/*", "arn:aws:servicequotas:*:*:ec2/*" ] } ] }