Skip to content

Adds a policy statement object

Description

Adds a policy statement object. To retrieve a list of existing policy statements, use the get_policy API.

Usage

entityresolution_add_policy_statement(arn, statementId, effect, action,
  principal, condition)

Arguments

  • arn

    [required] The Amazon Resource Name (ARN) of the resource that will be accessed by the principal.

  • statementId

    [required] A statement identifier that differentiates the statement from others in the same policy.

  • effect

    [required] Determines whether the permissions specified in the policy are to be allowed (Allow) or denied (Deny).

    If you set the value of the effect parameter to Deny for the add_policy_statement operation, you must also set the value of the effect parameter in the policy to Deny for the put_policy operation.

  • action

    [required] The action that the principal can use on the resource.

    For example, entityresolution:GetIdMappingJob, entityresolution:GetMatchingJob.

  • principal

    [required] The Amazon Web Services service or Amazon Web Services account that can access the resource defined as ARN.

  • condition

    A set of condition keys that you can use in key policies.

Value

A list with the following syntax:

list(
  arn = "string",
  token = "string",
  policy = "string"
)

Request syntax

svc$add_policy_statement(
  arn = "string",
  statementId = "string",
  effect = "Allow"|"Deny",
  action = list(
    "string"
  ),
  principal = list(
    "string"
  ),
  condition = "string"
)