GCP add-iam-policy-binding
Adds a role binding through a resource-specific IAM policy update.
All events with tag IAM.
Adds a role binding through a resource-specific IAM policy update.
Adds one IAM role to an existing instance profile.
Adds an IAM user to a group, changing the policies that apply to the user.
Attaches a managed permissions policy to an IAM group.
Attaches a managed permissions policy to an IAM role.
Attaches a managed permissions policy to an IAM user.
Changes the calling IAM user’s console password.
Creates a new long-term access key for an IAM user, enabling programmatic access to AWS services.
Creates a console password for an IAM user.
Registers an OIDC identity provider in IAM.
Creates a customer-managed IAM policy with an initial default version.
Creates a customer-managed policy version, optionally making it the operative version.
Creates an IAM role with a trust policy and optional role settings.
Creates a custom IAM role definition.
Registers SAML identity-provider metadata in IAM.
Creates an IAM role linked to a specific AWS service.
Creates an IAM user without automatically creating sign-in credentials.
Creates a virtual MFA device that must be enabled separately for an IAM user.
Deactivates a specified MFA device and removes its association with a user.
Deletes an IAM access key permanently.
Deletes the target user’s AWS console password without deleting access keys.
Removes the permissions boundary on an IAM role, potentially changing effective access.
Deletes a named inline permissions policy from an IAM role.
Deletes an IAM user after dependent credentials and associations are removed.
Removes the permissions boundary on an IAM user, potentially changing effective access.
Deletes a named inline permissions policy from an IAM user.
Deletes an unassigned virtual MFA device resource.
Detaches a managed policy from an IAM role without deleting the policy.
Detaches a managed policy from an IAM user without deleting the policy.
Enables a disabled service account.
Requests a short-lived OAuth access token for a service account.
Creates a user-managed service-account key.
Deletes a service account, potentially disrupting dependent workloads.
Deletes a service-account key.
Sets the IAM allow policy on a service account.
Uploads a public key certificate for a service account.
Updates a custom IAM role definition.
Records permission to attach a service account to a resource.
Identifies delegated service-account token generation.
Signs a JWT using a service account’s Google-managed key.
An IAM permission checked when a caller assigns a role to an AWS service; not an API event.
Adds or replaces a named inline permissions policy on an IAM group.
Sets or replaces the permissions boundary on an IAM role, potentially changing effective access.
Adds or replaces a named inline permissions policy on an IAM role.
Sets or replaces the permissions boundary on an IAM user, potentially changing effective access.
Adds or replaces a named inline permissions policy on an IAM user.
Removes an IAM user from a group, changing the policies that apply to the user.
Selects an existing customer-managed IAM policy version as the operative version.
Sets an IAM access key to Active or Inactive.
Replaces an IAM role trust policy, changing the conditions for assuming it.
Updates an IAM user console password or password-reset requirement.