AWSLambdaBasicExecutionRole - AWS Managed Policy (original) (raw)
Using this policyPolicy detailsPolicy versionJSON policy documentLearn more
Description: Provides write permissions to CloudWatch Logs.
AWSLambdaBasicExecutionRole
is an AWS managed policy.
Using this policy
You can attach AWSLambdaBasicExecutionRole
to your users, groups, and roles.
Policy details
- Type: Service role policy
- Creation time: April 09, 2015, 15:03 UTC
- Edited time: April 09, 2015, 15:03 UTC
- ARN:
arn:aws:iam::aws:policy/service-role/AWSLambdaBasicExecutionRole
Policy version
Policy version: v1 (default)
The policy's default version is the version that defines the permissions for the policy. When a user or role with the policy makes a request to access an AWS resource, AWS checks the default version of the policy to determine whether to allow the request.
JSON policy document
{
"Version" : "2012-10-17",
"Statement" : [
{
"Effect" : "Allow",
"Action" : [
"logs:CreateLogGroup",
"logs:CreateLogStream",
"logs:PutLogEvents"
],
"Resource" : "*"
}
]
}
Learn more
- Create a permission set using AWS managed policies in IAM Identity Center
- Adding and removing IAM identity permissions
- Understand versioning for IAM policies
- Get started with AWS managed policies and move toward least-privilege permissions
AWSLambda_ReadOnlyAccess
AWSLambdaDynamoDBExecutionRole
Did this page help you? - Yes
Thanks for letting us know we're doing a good job!
If you've got a moment, please tell us what we did right so we can do more of it.
Did this page help you? - No
Thanks for letting us know this page needs work. We're sorry we let you down.
If you've got a moment, please tell us how we can make the documentation better.