Glossary

    Resource-Based Policy

    Identity & Access

    A Resource-Based Policy is an IAM policy attached to a resource rather than to an identity. It specifies which principals can access the resource and what actions they can perform. Unlike identity-based policies, resource-based policies can grant cross-account access without requiring the caller to assume a role.

    AWS Services That Support Resource Policies

    • S3 - bucket policies
    • SQS - queue policies
    • SNS - topic policies
    • KMS - key policies
    • Lambda - function policies
    • ECR - repository policies
    • Secrets Manager - secret policies

    Related AWS Services

    Toc Consulting: AWS Security & Cloud Architecture

    Securing your AWS estate?

    Our team helps engineering teams secure and architect AWS the right way: assessment in week one, a prioritized action plan in week two.