本文為英文版的機器翻譯版本,如內容有任何歧義或不一致之處,概以英文版為準。
AmazonBedrockLimitedAccess
描述:提供對 Amazon Bedrock 及其所需相關服務的有限存取權
AmazonBedrockLimitedAccess
是 AWS 受管政策。
使用此政策
您可以AmazonBedrockLimitedAccess
連接到您的使用者、群組和角色。
政策詳細資訊
-
類型: AWS 受管政策
-
建立時間:2025 年 6 月 29 日 22:22 UTC
-
編輯時間:2025 年 6 月 29 日 22:22 UTC
-
ARN:
arn:aws:iam::aws:policy/AmazonBedrockLimitedAccess
政策版本
政策版本: v1 (預設)
政策的預設版本是定義政策許可的版本。當具有 政策的使用者或角色提出存取 AWS 資源的請求時, 會 AWS 檢查政策的預設版本,以決定是否允許請求。
JSON 政策文件
{ "Version" : "2012-10-17", "Statement" : [ { "Sid" : "BedrockAPIs", "Effect" : "Allow", "Action" : [ "bedrock:Get*", "bedrock:List*", "bedrock:CallWithBearerToken", "bedrock:BatchDeleteEvaluationJob", "bedrock:CreateEvaluationJob", "bedrock:CreateGuardrail", "bedrock:CreateGuardrailVersion", "bedrock:CreateInferenceProfile", "bedrock:CreateModelCopyJob", "bedrock:CreateModelCustomizationJob", "bedrock:CreateModelImportJob", "bedrock:CreateModelInvocationJob", "bedrock:CreatePromptRouter", "bedrock:CreateProvisionedModelThroughput", "bedrock:DeleteCustomModel", "bedrock:DeleteGuardrail", "bedrock:DeleteImportedModel", "bedrock:DeleteInferenceProfile", "bedrock:DeletePromptRouter", "bedrock:DeleteProvisionedModelThroughput", "bedrock:StopEvaluationJob", "bedrock:StopModelCustomizationJob", "bedrock:StopModelInvocationJob", "bedrock:TagResource", "bedrock:UntagResource", "bedrock:UpdateGuardrail", "bedrock:UpdateProvisionedModelThroughput", "bedrock:ApplyGuardrail", "bedrock:InvokeModel", "bedrock:InvokeModelWithResponseStream" ], "Resource" : "*" }, { "Sid" : "DescribeKey", "Effect" : "Allow", "Action" : [ "kms:DescribeKey" ], "Resource" : "arn:*:kms:*:::*" }, { "Sid" : "APIsWithAllResourceAccess", "Effect" : "Allow", "Action" : [ "iam:ListRoles", "ec2:DescribeVpcs", "ec2:DescribeSubnets", "ec2:DescribeSecurityGroups" ], "Resource" : "*" }, { "Sid" : "MarketplaceOperationsFromBedrockFor3pModels", "Effect" : "Allow", "Action" : [ "aws-marketplace:Subscribe", "aws-marketplace:ViewSubscriptions", "aws-marketplace:Unsubscribe" ], "Resource" : "*", "Condition" : { "StringEquals" : { "aws:CalledViaLast" : "bedrock.amazonaws.com" } } } ] }