Skip to content
This repository has been archived by the owner on Jun 15, 2023. It is now read-only.

AWS Global Condition Keys #111

Closed
jsoncow opened this issue Mar 28, 2019 · 7 comments
Closed

AWS Global Condition Keys #111

jsoncow opened this issue Mar 28, 2019 · 7 comments

Comments

@jsoncow
Copy link

jsoncow commented Mar 28, 2019

I know SNS has aws:SourceOwner as an available key for SNS. However, I don’t see this in any AWS documentation (For SNS keys or global keys). This is in the default SNS access policy applied to topics.

https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_condition-keys.html#AvailableKeys

@stephswo
Copy link
Contributor

stephswo commented Apr 1, 2019

Thanks! I wasn't aware of this one. I'll look into it.

@tamakisquare
Copy link

@stephswo Any plan to add a formal definition for aws:SourceOwner to the documentation?

@stephswo
Copy link
Contributor

stephswo commented Oct 23, 2020 via email

@ecerulm
Copy link

ecerulm commented Nov 30, 2021

@stephswo , still aws:SourceOwner is not documented at https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_condition-keys.html#AvailableKeys, has it been decided that it's not going to be documented there? If so ,then maybe it would be good to say so here and close the issue.

@bonniekeller
Copy link
Contributor

Thanks so much for the contributions. We don't plan to document aws:SourceOwner. aws:SourceAccount was introduced as the preferred replacement.

@iugrina
Copy link

iugrina commented Nov 4, 2022

@bonniekeller The default policy created by AWS when creating a new topic through the Web Console includes "AWS:SourceOwner" so I'm not sure if you need to change that since "aws:SourceAccount was introduced as the preferred replacement.". IMHO this is a bit suboptimal for those trying to understand access policies for topics :(

@bonniekeller
Copy link
Contributor

bonniekeller commented Nov 15, 2022

@iugrina I've passed your feedback along to the SNS team. My understanding is that they supported aws:SourceOwner before aws:SourceAccount was introduced.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

6 participants