AWS 一般参考
参考指南 (版本 1.0)
AWS 文档中描述的 AWS 服务或功能可能因区域而异。要查看适用于中国区域的差异,请参阅中国的 AWS 服务入门

Amazon 资源名称 (ARN) 和 AWS 服务命名空间

Amazon 资源名称 (ARN) 唯一标识 AWS 资源。当您需要在 AWS 全局环境中(比如 IAM 策略、Amazon Relational Database Service (Amazon RDS) 标签和 API 调用中)明确指定一项资源时,我们要求使用 ARN。

ARN 格式

下面是一些示例 ARN:

<!-- Elastic Beanstalk application version --> arn:aws-cn:elasticbeanstalk:us-east-1:123456789012:environment/My App/MyEnvironment <!-- IAM user name --> arn:aws-cn:iam::123456789012:user/David <!-- Amazon RDS instance used for tagging --> arn:aws-cn:rds:eu-west-1:123456789012:db:mysql-db <!-- Object in an Amazon S3 bucket --> arn:aws-cn:s3:::my_corporate_bucket/exampleobject.png

以下是 ARN 的一般格式;所用的具体组成部分和值取决于 AWS 服务。要使用 ARN,请将示例策略中的红色斜体文本替换为您自己的信息。

arn:partition:service:region:account-id:resource arn:partition:service:region:account-id:resourcetype/resource arn:partition:service:region:account-id:resourcetype/resource/qualifier arn:partition:service:region:account-id:resourcetype/resource:qualifier arn:partition:service:region:account-id:resourcetype:resource arn:partition:service:region:account-id:resourcetype:resource:qualifier
分区

资源所处的分区。对于标准 AWS 区域,分区是 aws。如果资源位于其他分区,则分区是 aws-partitionname例如,位于中国(北京)区域的资源的分区为 aws-cn

service

标识 AWS 产品(例如,Amazon S3、IAM 或 Amazon RDS)的服务命名空间。有关命名空间的列表,请参阅 AWS 服务命名空间

区域

资源所在的区域。请注意,一些资源的 ARN 不需要区域,因此,该组成部分可能会被省略。

账户

拥有资源的 AWS 账户 ID 不含连字符。例如:123456789012。请注意,一些资源的 ARN 不需要账号,因此,该组成部分可能会被省略。

resourceresourcetype:resourceresourcetype/resource

ARN 这部分的内容因服务而异。它通常包含资源类型(例如,IAM 用户或 Amazon RDS 数据库)的指示符,后跟一个斜杠 (/) 或冒号 (:),后跟资源名称本身。如 ARN 中的路径 中所述,有些服务允许为资源名称指定路径。

示例 ARN

以下部分针对不同的服务提供了 ARN 的语法和示例。有关在特定 AWS 服务中使用 ARN 的更多信息,请参阅针对该服务的文档。要使用 ARN,请将示例策略中的红色斜体文本替换为您自己的信息。

某些服务支持 IAM 资源级权限。有关更多信息,请参阅与 IAM 配合使用的 AWS 服务

服务

Alexa for Business

语法:

arn:aws-cn:a4b:region:accountid:resourcetype/resource

示例:

arn:aws-cn:a4b:us-east-1:123456789012:room/7315ffdf0eeb874dc4ab8a546e8b70ec/5f90e5d608b6baa9c88db56654aef158

Amazon API Gateway

语法:

arn:aws-cn:apigateway:region::resource-path arn:aws-cn:execute-api:region:account-id:api-id/stage-name/HTTP-VERB/resource-path arn:aws-cn:execute-api:region:account-id:api-id/stage-name/route-key

示例:

arn:aws-cn:apigateway:us-east-1::/restapis/a123456789012bc3de45678901f23a45/* arn:aws-cn:apigateway:us-east-1::a123456789012bc3de45678901f23a45:/test/mydemoresource/* arn:aws-cn:apigateway:*::a123456789012bc3de45678901f23a45:/*/petstorewalkthrough/pets arn:aws-cn:apigateway:us-east-1::/apis/a123456789012bc3de45678901f23a45/* arn:aws-cn:execute-api:us-east-1:123456789012:qsxrty/test/GET/mydemoresource/* arn:aws-cn:execute-api:us-east-1:123456789012:qsxrty/test/$connect arn:aws-cn:execute-api:us-east-1:123456789012:qsxrty/test/$route1

AWS AppSync

语法:

arn:aws-cn:appsync:your-region:account-id:apis/AppSyncEndpointName/types/Query/fields/field-name arn:aws-cn:appsync:your-region:account-id:apis/AppSyncEndpointName/types/Mutation/fields/field-name arn:aws-cn:appsync:your-region:account-id:apis/AppSyncEndpointName/types/Subscription/fields/field-name

示例:

arn:aws-cn:appsync:us-west-2:123456789012:apis/AppSyncEndpointName/types/Query/fields/posts arn:aws-cn:appsync:us-west-2:123456789012:apis/AppSyncEndpointName/types/Mutation/fields/addPost arn:aws-cn:appsync:us-west-2:123456789012:apis/AppSyncEndpointName/types/Query/fields/my-subscription

AWS Artifact

语法:

arn:aws-cn:artifact:::report-package/document-type/report-type

示例:

arn:aws-cn:artifact:::report-package/Certifications and Attestations/SOC/* arn:aws-cn:artifact:::report-package/Certifications and Attestations/ISO/* arn:aws-cn:artifact:::report-package/Certifications and Attestations/PCI/*

Amazon Athena

语法:

arn:aws:athena:region:account-id:workgroup/workgroup-name

示例:

arn:aws-cn:athena:us-east-1:123456789012:workgroup/my-workgroup-name

Amazon EC2 Auto Scaling

语法:

arn:aws-cn:autoscaling:region:account-id:scalingPolicy:policyid:autoScalingGroupName/groupfriendlyname:policyName/policyfriendlyname arn:aws-cn:autoscaling:region:account-id:autoScalingGroup:groupid:autoScalingGroupName/groupfriendlyname

示例:

arn:aws-cn:autoscaling:us-east-1:123456789012:scalingPolicy:c7a27f55-d35e-4153-b044-8ca9155fc467:autoScalingGroupName/my-test-asg1:policyName/my-scaleout-policy

Application Auto Scaling

语法:

arn:aws-cn:autoscaling:region:account-id:scalingPolicy:policy-id:resource/service-namespace/resource-id:policyName/policyfriendlyname arn:aws-cn:autoscaling:region:account-id:scheduledAction:action-id:resource/service-namespace/resource-id:scheduledActionName/actionfriendlyname

示例:

arn:aws-cn:autoscaling:us-east-1:123456789012:scalingPolicy:c7a27f55-d35e-4153-b044-8ca9155fc467:resource/ec2/spot-fleet-request/sfr-73fbd2ce-aa30-494c-8788-1cee4EXAMPLE:policyName/cpu40 arn:aws-cn:autoscaling:us-east-1:123456789012:scheduledAction:38c84579-0f51-4adc-879b-a2cc4EXAMPLE:resource/ec2/spot-fleet-request/sfr-09d694de-4d82-4b48-a4f4-2f38fEXAMPLE:scheduledActionName/my-action

AWS App Mesh

语法:

arn:aws-cn:appmesh:region:account-id:mesh/mesh-name arn:aws-cn:appmesh:region:account-id:mesh/mesh-name/virtualService/virtual-service-name arn:aws-cn:appmesh:region:account-id:mesh/mesh-name/virtualNode/virtual-node-name arn:aws-cn:appmesh:region:account-id:mesh/mesh-name/virtualRouter/virtual-router-name arn:aws-cn:appmesh:region:account-id:mesh/mesh-name/virtualRouter/virtual-router-name/route/route-name

示例:

arn:aws-cn:appmesh:us-east-1:123456789012:mesh/my-mesh arn:aws-cn:appmesh:us-east-1:123456789012:mesh/my-mesh/virtualService/my-service.default.svc.cluster.local arn:aws-cn:appmesh:us-east-1:123456789012:mesh/my-mesh/virtualNode/my-virtual-node arn:aws-cn:appmesh:us-east-1:123456789012:mesh/my-mesh/virtualRouter/my-virtual-router arn:aws-cn:appmesh:us-east-1:123456789012:mesh/my-mesh/virtualRouter/my-virtual-router/route/my-route

AWS Batch

语法:

arn:aws-cn:batch:region:account-id:compute-environment/name arn:aws-cn:batch:region:account-id:job-definition/job-name:revision arn:aws-cn:batch:region:account-id:job-queue/queue-name

示例:

arn:aws-cn:batch:us-east-1:123456789012:compute-environment/my-environment arn:aws-cn:batch:us-east-1:123456789012:job-definition/my-job-definition:1 arn:aws-cn:batch:us-east-1:123456789012:job-queue/my-queue

AWS Certificate Manager

语法:

arn:aws-cn:acm:region:account-id:certificate/certificate-id

示例:

arn:aws-cn:acm:us-east-1:123456789012:certificate/12345678-1234-1234-1234-123456789012

AWS Certificate Manager 私有证书颁发机构

语法 (私有证书颁发机构):

arn:aws-cn:acm-pca:region:account-id:certificate-authority/ca-id

示例:

arn:aws-cn:acm-pca:us-east-1:123456789012:certificate-authority/12345678-1234-1234-1234-123456789012/certificate/e8cbd2bedb122329f97706bcfec990f8

AWS Cloud9

语法:

arn:aws-cn:cloud9:region:account-id:environment:environment-id

示例:

arn:aws-cn:cloud9:us-west-2:123456789012:environment:81e900317347585a0601e04c8d52eaEX

Amazon Cloud Directory

语法:

arn:aws-cn:clouddirectory:region:account-id:directory/directoryID

示例:

arn:aws-cn:clouddirectory:us-west-2:123456789012:directory/ARIqk1HD-UjdtmcIrJHEvPI

AWS CloudFormation

语法:

arn:aws-cn:cloudformation:region:account-id:stack/stackname/additionalidentifier arn:aws-cn:cloudformation:region:account-id:changeSet/changesetname/additionalidentifier

示例:

arn:aws-cn:cloudformation:us-east-1:123456789012:stack/MyProductionStack/abc9dbf0-43c2-11e3-a6e8-50fa526be49c arn:aws-cn:cloudformation:us-east-1:123456789012:changeSet/MyProductionChangeSet/abc9dbf0-43c2-11e3-a6e8-50fa526be49c

Amazon CloudFront

语法:

arn:aws-cn:cloudfront::account-id:*

示例:

arn:aws-cn:cloudfront::123456789012:*

AWS Cloud Map

语法:

arn:aws-cn:servicediscovery:region:account-id:namespace/namespace-id arn:aws-cn:servicediscovery:region:account-id:service/service-id

AWS Cloud Map 的 ARN 不需要账号或区域。

示例:

arn:aws-cn:servicediscovery:us-east-1:123456789012:namespace/ns-e1tpmexample0001 arn:aws-cn:servicediscovery:us-east-1:123456789012:service/srv-e4anhexample0004

Amazon CloudSearch

语法:

arn:aws-cn:cloudsearch:region:account-id:domain/domainname

示例:

arn:aws-cn:cloudsearch:us-east-1:123456789012:domain/imdb-movies

AWS CloudTrail

语法:

arn:aws-cn:cloudtrail:region:account-id:trail/trailname

示例:

arn:aws-cn:cloudtrail:us-east-1:123456789012:trail/mytrailname

Amazon CloudWatch

语法:

arn:aws-cn:cloudwatch:region:account-id:alarm:alarm-name arn:aws-cn:cloudwatch::account-id:dashboard/dashboard-name

示例:

arn:aws-cn:cloudwatch:us-east-1:123456789012:alarm:* arn:aws-cn:cloudwatch:us-east-1:123456789012:alarm:MyAlarmName arn:aws-cn:cloudwatch::123456789012:dashboard/MyDashboardName

Amazon CloudWatch Events

语法:

arn:aws-cn:events:region:*:*

示例:

arn:aws-cn:events:us-east-1:*:* arn:aws-cn:events:us-east-1:123456789012:* arn:aws-cn:events:us-east-1:123456789012:rule/my-rule

Amazon CloudWatch Logs

语法:

arn:aws-cn:logs:region:*:*

示例:

arn:aws-cn:logs:us-east-1:*:* arn:aws-cn:logs:us-east-1:123456789012:* arn:aws-cn:logs:us-east-1:123456789012:log-group:my-log-group arn:aws-cn:logs:us-east-1:123456789012:log-group:my-log-group:* arn:aws-cn:logs:us-east-1:123456789012:log-group:my-log-group* arn:aws-cn:logs:us-east-1:123456789012:log-group:my-log-group:log-stream:my-log-stream arn:aws-cn:logs:us-east-1:123456789012:log-group:my-log-group:log-stream:my-log-stream* arn:aws-cn:logs:us-east-1:123456789012:log-group:my-log-group*:log-stream:my-log-stream*

CodeBuild

语法:

arn:aws-cn:codebuild:region:account-id:resourcetype/resource

示例:

arn:aws-cn:codebuild:us-east-1:123456789012:project/my-demo-project arn:aws-cn:codebuild:us-east-1:123456789012:build/my-demo-project:7b7416ae-89b4-46cc-8236-61129df660ad

AWS CodeCommit

语法:

arn:aws-cn:codecommit:region:account-id:resource-specifier

示例:

arn:aws-cn:codecommit:us-east-1:123456789012:MyDemoRepo

AWS CodeDeploy

语法:

arn:aws-cn:codedeploy:region:account-id:resource-type:resource-specifier arn:aws-cn:codedeploy:region:account-id:resource-type/resource-specifier

示例:

arn:aws-cn:codedeploy:us-east-1:123456789012:application:WordPress_App arn:aws-cn:codedeploy:us-east-1:123456789012:instance/AssetTag*

Amazon Cognito 您的用户池

语法:

arn:aws-cn:cognito-idp:region:account-id:userpool/user-pool-id

示例:

arn:aws-cn:cognito-idp:us-east-1:123456789012:userpool/us-east-1:1a1a1a1a-ffff-1111-9999-12345678

Amazon Cognito 联合身份

语法:

arn:aws-cn:cognito-identity:region:account-id:identitypool/identity-pool-id

示例:

arn:aws-cn:cognito-identity:us-east-1:123456789012:/identitypool/us-east-1:1a1a1a1a-ffff-1111-9999-12345678

Amazon Cognito Sync

语法:

arn:aws-cn:cognito-sync:region:account-id:identitypool/identity-pool-id arn:aws-cn:cognito-sync:region:account-id:identitypool/identity-pool-id/identity/identity-id arn:aws-cn:cognito-sync:region:account-id:identitypool/identity-pool-id/identity/identity-id/dataset/dataset-name

示例:

arn:aws-cn:cognito-sync:us-east-1:123456789012:identitypool/us-east-1:1a1a1a1a-ffff-1111-9999-12345678

AWS Config

语法:

arn:aws-cn:config:region:account-id:config-rule/config-rule-id

示例:

arn:aws-cn:config:us-east-1:123456789012:config-rule/config-rule-8fngan

AWS CodePipeline

语法:

arn:aws-cn:codepipeline:region:account-id:resource-specifier

示例:

arn:aws-cn:codepipeline:us-east-1:123456789012:MyDemoPipeline

AWS CodeStar

语法:

arn:aws-cn:codestar:region:account-id:project/resource-specifier

示例:

arn:aws-cn:codestar:us-east-1:123456789012:project/my-first-project

AWS DataSync

arn:aws-cn:datasync:region:account-id:agent/agent-id arn:aws-cn:datasync:region:account-id:location/location-id arn:aws-cn:datasync:region:account-id:task/task-id arn:aws-cn:datasync:region:account-id:task/task-id/execution/exec-id

示例:

arn:aws-cn:datasync:us-east-2:111222333444:agent/agent-0b0addbeef44baca3 arn:aws-cn:datasync:us-east-2:111222333444:location/loc-07db7abfc326c50fb arn:aws-cn:datasync:us-east-2:111222333444:task/task-08de6e6697796f026 arn:aws-cn:datasync:us-east-2:111222333444:task/task-08de6e6697796f026/execution/exec-04ce9d516d69bd52f

AWS Direct Connect

语法:

arn:aws-cn:directconnect:region:account-id:dxcon/connection-id arn:aws-cn:directconnect:region:account-id:dxlag/lag-id arn:aws-cn:directconnect:region:account-id:dxvif/virtual-interface-id arn:aws-cn:directconnect:region:account-id:dx-gateway/direct-connect-gateway-id

示例:

arn:aws-cn:directconnect:us-east-1:123456789012:dxcon/dxcon-fgase048 arn:aws-cn:directconnect:us-east-1:123456789012:dxlag/dxlag-ffy7zraq arn:aws-cn:directconnect:us-east-1:123456789012:dxvif/dxvif-fgrb110x arn:aws-cn:directconnect:us-east-1:123456789012:dx-gateway/f98379d1-148b-43a1-83dd-4a130e8b7645

AWS Directory Service

语法:

arn:aws-cn:ds:region:account-id:directory/directoryId

示例:

arn:aws-cn:ds:us-west-2:123456789012:directory/ARIqk1HD-UjdtmcIrJHEvPI

Amazon DocumentDB

语法:

arn:aws-cn:rds:region:account-id:db:resource-id arn:aws-cn:rds:region:account-id:cluster:resource-id arn:aws-cn:rds:region:account-id:cluster-pg:resource-id arn:aws-cn:rds:region:account-id:secgrp:resource-id arn:aws-cn:rds:region:account-id:cluster-snapshot:resource-id arn:aws-cn:rds:region:account-id:subgrp:resource-id

示例:

arn:aws-cn:rds:us-east-1:444455556666:db:sample-instance arn:aws-cn:rds:us-east-1:444455556666:cluster:sample-cluster arn:aws-cn:rds:us-east-1:444455556666:cluster-pg:sample-cluster-parameter-group arn:aws-cn:rds:us-east-1:444455556666:secgrp:sample-security-group arn:aws-cn:rds:us-east-1:444455556666:cluster-snapshot:sample-snapshot arn:aws-cn:rds:us-east-1:444455556666:subgrp:sample-subnet-group

有关补充阅读,请参阅了解 Amazon DocumentDB Amazon 资源名称 (ARN)

Amazon DynamoDB

语法:

arn:aws-cn:dynamodb:region:account-id:table/tablename arn:aws-cn:dynamodb:region:account-id:table/tablename/stream/label

示例:

arn:aws-cn:dynamodb:us-east-1:123456789012:table/books_table arn:aws-cn:dynamodb:us-east-1:123456789012:table/books_table/stream/2015-05-11T21:21:33.291

AWS Elastic Beanstalk

语法:

arn:aws-cn:elasticbeanstalk:region:account-id:application/applicationname arn:aws-cn:elasticbeanstalk:region:account-id:applicationversion/applicationname/versionlabel arn:aws-cn:elasticbeanstalk:region:account-id:environment/applicationname/environmentname arn:aws-cn:elasticbeanstalk:region::solutionstack/solutionstackname arn:aws-cn:elasticbeanstalk:region:account-id:configurationtemplate/applicationname/templatename

示例:

arn:aws-cn:elasticbeanstalk:us-east-1:123456789012:application/My App arn:aws-cn:elasticbeanstalk:us-east-1:123456789012:applicationversion/My App/My Version arn:aws-cn:elasticbeanstalk:us-east-1:123456789012:environment/My App/MyEnvironment arn:aws-cn:elasticbeanstalk:us-east-1::solutionstack/32bit Amazon Linux running Tomcat 7 arn:aws-cn:elasticbeanstalk:us-east-1:123456789012:configurationtemplate/My App/My Template

Amazon Elastic Compute Cloud (Amazon EC2)

语法:

arn:aws-cn:ec2:region:account-id:capacity-reservation/reservation-id arn:aws-cn:ec2:region:account-id:client-vpn-endpoint/endpoint-id arn:aws-cn:ec2:region:account-id:customer-gateway/cgw-id arn:aws-cn:ec2:region:account-id:dedicated-host/host-id arn:aws-cn:ec2:region:account-id:dhcp-options/dhcp-options-id arn:aws-cn:ec2:region:account-id:egress-only-internet-gateway/eigw-id arn:aws-cn:ec2:region:account-id:eip/eipalloc-id arn:aws-cn:ec2:region:account-id:elastic-gpu/elastic-gpu-id arn:aws-cn:ec2:region::fpga-image/fpga-image-id arn:aws-cn:ec2:region::image/image-id arn:aws-cn:ec2:region:account-id:image/image-id arn:aws-cn:ec2:region:account-id:instance/instance-id arn:aws-cn:ec2:region:account-id:internet-gateway/igw-id arn:aws-cn:ec2:region:account-id:key-pair/key-pair-name arn:aws-cn:ec2:region:account-id:launch-template/launch-template-id arn:aws-cn:ec2:region:account-id:natgateway/natgateway-id arn:aws-cn:ec2:region:account-id:network-acl/nacl-id arn:aws-cn:ec2:region:account-id:network-interface/eni-id arn:aws-cn:ec2:region:account-id:placement-group/placement-group-name arn:aws-cn:ec2:region:account-id:reserved-instances/reservation-id arn:aws-cn:ec2:region:account-id:route-table/route-table-id arn:aws-cn:ec2:region:account-id:security-group/security-group-id arn:aws-cn:ec2:region:account-id:snapshot/snapshot-id arn:aws-cn:ec2:region::spot-instance-request/spot-instance-request-id arn:aws-cn:ec2:region:account-id:subnet/subnet-id arn:aws-cn:ec2:region:account-id:transit-gateway/tgw-id arn:aws-cn:ec2:region:account-id:transit-gateway-attachment/tgw-attachment-id arn:aws-cn:ec2:region:account-id:transit-gateway-route-table/tgw-route-table-id arn:aws-cn:ec2:region:account-id:volume/volume-id arn:aws-cn:ec2:region:account-id:vpc/vpc-id arn:aws-cn:ec2:region:account-id:vpc-peering-connection/vpc-peering-connection-id arn:aws-cn:ec2:region:account-id:vpn-connection/vpn-id arn:aws-cn:ec2:region:account-id:vpn-gateway/vgw-id

示例:

arn:aws-cn:ec2:us-east-1::image/ami-1a2b3c4d arn:aws-cn:ec2:us-east-1:123456789012:instance/* arn:aws-cn:ec2:us-east-1:123456789012:volume/* arn:aws-cn:ec2:us-east-1:123456789012:volume/vol-1a2b3c4d arn:aws-cn:ec2:us-east-1:111122223333:vpc/vpc-12345678

Amazon Elastic Container Registry (Amazon ECR)

语法:

arn:aws-cn:ecr:region:account-id:repository/repository-name

示例:

arn:aws-cn:ecr:us-east-1:123456789012:repository/my-repository

Amazon Elastic Container Service (Amazon ECS)

语法:

arn:aws-cn:ecs:region:account-id:cluster/cluster-name arn:aws-cn:ecs:region:account-id:container-instance/cluster-name/container-instance-id arn:aws-cn:ecs:region:account-id:task-definition/task-definition-family-name:task-definition-revision-number arn:aws-cn:ecs:region:account-id:service/cluster-name/service-name arn:aws-cn:ecs:region:account-id:task/cluster-name/task-id arn:aws-cn:ecs:region:account-id:container/container-id

示例:

arn:aws-cn:ecs:us-east-1:123456789012:cluster/my-cluster arn:aws-cn:ecs:us-east-1:123456789012:container-instance/my-cluster/403125b0-555c-4473-86b5-65982db28a6d arn:aws-cn:ecs:us-east-1:123456789012:task-definition/hello_world:8 arn:aws-cn:ecs:us-east-1:123456789012:service/my-cluster/sample-webapp arn:aws-cn:ecs:us-east-1:123456789012:task/my-cluster/1abf0f6d-a411-4033-b8eb-a4eed3ad252a arn:aws-cn:ecs:us-east-1:123456789012:container/476e7c41-17f2-4c17-9d14-412566202c8a

Amazon Elastic Kubernetes Service (Amazon EKS)

语法:

arn:aws-cn:eks:region:account-id:cluster/cluster-name

示例:

arn:aws-cn:eks:us-east-1:123456789012:cluster/my-cluster

Amazon Elastic File System

语法:

arn:aws-cn:elasticfilesystem:region:account-id:file-system/file-system-id

示例:

arn:aws-cn:elasticfilesystem:us-east-1:123456789012:file-system/fs12345678

Elastic Load Balancing (应用程序负载均衡器)

语法:

arn:aws-cn:elasticloadbalancing:region:account-id:loadbalancer/app/load-balancer-name/load-balancer-id arn:aws-cn:elasticloadbalancing:region:account-id:listener/app/load-balancer-name/load-balancer-id/listener-id arn:aws-cn:elasticloadbalancing:region:account-id:listener-rule/app/load-balancer-name/load-balancer-id/listener-id/rule-id arn:aws-cn:elasticloadbalancing:region:account-id:targetgroup/target-group-name/target-group-id

示例:

arn:aws-cn:elasticloadbalancing:us-east-1:123456789012:loadbalancer/app/my-load-balancer/50dc6c495c0c9188 arn:aws-cn:elasticloadbalancing:us-east-1:123456789012:listener/app/my-load-balancer/50dc6c495c0c9188/f2f7dc8efc522ab2 arn:aws-cn:elasticloadbalancing:us-east-1:123456789012:listener-rule/app/my-load-balancer/50dc6c495c0c9188/f2f7dc8efc522ab2/9683b2d02a6cabee arn:aws-cn:elasticloadbalancing:us-east-1:123456789012:targetgroup/my-targets/73e2d6bc24d8a067

Elastic Load Balancing (网络负载均衡器)

语法:

arn:aws-cn:elasticloadbalancing:region:account-id:loadbalancer/net/load-balancer-name/load-balancer-id arn:aws-cn:elasticloadbalancing:region:account-id:listener/net/load-balancer-name/load-balancer-id/listener-id arn:aws-cn:elasticloadbalancing:region:account-id:listener-rule/net/load-balancer-name/load-balancer-id/listener-id/rule-id arn:aws-cn:elasticloadbalancing:region:account-id:targetgroup/target-group-name/target-group-id

示例:

arn:aws-cn:elasticloadbalancing:us-east-1:123456789012:loadbalancer/net/my-load-balancer/50dc6c495c0c9188 arn:aws-cn:elasticloadbalancing:us-east-1:123456789012:listener/net/my-load-balancer/50dc6c495c0c9188/f2f7dc8efc522ab2 arn:aws-cn:elasticloadbalancing:us-east-1:123456789012:listener-rule/net/my-load-balancer/50dc6c495c0c9188/f2f7dc8efc522ab2/9683b2d02a6cabee arn:aws-cn:elasticloadbalancing:us-east-1:123456789012:targetgroup/my-targets/73e2d6bc24d8a067

Elastic Load Balancing (传统负载均衡器)

语法:

arn:aws-cn:elasticloadbalancing:region:account-id:loadbalancer/name

示例:

arn:aws-cn:elasticloadbalancing:us-east-1:123456789012:loadbalancer/my-load-balancer

Amazon Elastic Transcoder

语法:

arn:aws-cn:elastictranscoder:region:account-id:resource/id

示例:

arn:aws-cn:elastictranscoder:us-east-1:123456789012:preset/*

Amazon ElastiCache

语法:

arn:aws-cn:elasticache:region:account-id:resourcetype:resourcename

示例:

arn:aws-cn:elasticache:us-west-2:123456789012:cluster:myCluster arn:aws-cn:elasticache:us-west-2:123456789012:snapshot:mySnapshot

Amazon Elasticsearch Service

语法:

arn:aws-cn:es:region:account-id:domain/domain-name

示例:

arn:aws-cn:es:us-east-1:123456789012:domain/streaming-logs

Amazon EventBridge

语法:

arn:aws-cn:events:region:*:*

示例:

arn:aws-cn:events:us-east-1:*:* arn:aws-cn:events:us-east-1:123456789012:* arn:aws-cn:events:us-east-1:123456789012:rule/my-rule arn:aws-cn:events:us-east-1:123456789012:event-bus/event-bus-name

Amazon S3 Glacier

语法:

arn:aws-cn:glacier:region:account-id:vaults/vaultname

示例:

arn:aws-cn:glacier:us-east-1:123456789012:vaults/examplevault arn:aws-cn:glacier:us-east-1:123456789012:vaults/example* arn:aws-cn:glacier:us-east-1:123456789012:vaults/*

AWS Global Accelerator

语法:

arn:aws-cn:globalaccelerator::account-id:accelerator/accelerator-id

示例:

arn:aws-cn:globalaccelerator::123456789012:accelerator/123abc4567e8fa901bc2d3example

AWS Ground Station

语法:

arn:aws-cn:groundstation:region:account-id:config/config-type/config-id arn:aws-cn:groundstation:region:account-id:contact/contact-id arn:aws-cn:groundstation:region:account-id:mission-profile/mission-profile-id arn:aws-cn:groundstation:region:account-id:satellite/satellite-id

示例:

arn:aws-cn:groundstation:us-east-2:123456789012:config/DecodeConfig/11111111-2222-3333-4444-555555555555 arn:aws-cn:groundstation:us-east-2:123456789012:contact/11111111-2222-3333-4444-555555555555 arn:aws-cn:groundstation:us-east-2:123456789012:mission-profile/11111111-2222-3333-4444-555555555555 arn:aws-cn:groundstation:us-east-2:123456789012:satellite/11111111-2222-3333-4444-555555555555

Amazon GuardDuty

语法:

arn:aws-cn:guardduty:region:account-id:detector/detector-id arn:aws-cn:guardduty:region:account-id:detector/detector-id/filter/filter-name arn:aws-cn:guardduty:region:account-id:detector/detector-id/ipset/ipset-id arn:aws-cn:guardduty:region:account-id:detector/detector-id/threatintelset/threatintelset-id

示例:

arn:aws-cn:guardduty:us-east-1:123456789012:detector/12abc34d567e8fa901bc2d34e56789f0 arn:aws-cn:guardduty:us-east-1:123456789012:detector/12abc34d567e8fa901bc2d34e56789f0/filter/example-filter arn:aws-cn:guardduty:us-east-1:123456789012:detector/12abc34d567e8fa901bc2d34e56789f0/ipset/0cb0141ab9fbde177613ab9436212e90 arn:aws-cn:guardduty:us-east-1:123456789012:detector/12abc34d567e8fa901bc2d34e56789f0/threatintelset/12a34567890bc1de2345f67ab8901234

AWS Health / Personal Health Dashboard

语法:

arn:aws-cn:health:region::event/event-id arn:aws-cn:health:region:account-id:entity/entity-id

示例:

arn:aws-cn:health:us-east-1::event/AWS_EC2_EXAMPLE_ID arn:aws-cn:health:us-east-1:123456789012:entity/AVh5GGT7ul1arKr1sE1K

AWS Identity and Access Management (IAM)

语法:

arn:aws-cn:iam::account-id:root arn:aws-cn:iam::account-id:user/user-name arn:aws-cn:iam::account-id:group/group-name arn:aws-cn:iam::account-id:role/role-name arn:aws-cn:iam::account-id:policy/policy-name arn:aws-cn:iam::account-id:instance-profile/instance-profile-name arn:aws-cn:sts::account-id:federated-user/user-name arn:aws-cn:sts::account-id:assumed-role/role-name/role-session-name arn:aws-cn:iam::account-id:mfa/virtual-device-name arn:aws-cn:iam::account-id:u2f/u2f-token-id arn:aws-cn:iam::account-id:server-certificate/certificate-name arn:aws-cn:iam::account-id:saml-provider/provider-name arn:aws-cn:iam::account-id:oidc-provider/provider-name

示例:

arn:aws-cn:iam::123456789012:root arn:aws-cn:iam::123456789012:user/JohnDoe arn:aws-cn:iam::123456789012:user/division_abc/subdivision_xyz/JaneDoe arn:aws-cn:iam::123456789012:group/Developers arn:aws-cn:iam::123456789012:group/division_abc/subdivision_xyz/product_A/Developers arn:aws-cn:iam::123456789012:role/S3Access arn:aws-cn:iam::123456789012:role/application_abc/component_xyz/S3Access arn:aws-cn:iam::123456789012:policy/UsersManageOwnCredentials arn:aws-cn:iam::123456789012:policy/division_abc/subdivision_xyz/UsersManageOwnCredentials arn:aws-cn:iam::123456789012:instance-profile/Webserver arn:aws-cn:sts::123456789012:federated-user/JohnDoe arn:aws-cn:sts::123456789012:assumed-role/Accounting-Role/JaneDoe arn:aws-cn:iam::123456789012:mfa/JaneDoeMFA arn:aws-cn:iam::123456789012:u2f/user/JohnDoe/default (U2F security key) arn:aws-cn:iam::123456789012:server-certificate/ProdServerCert arn:aws-cn:iam::123456789012:server-certificate/division_abc/subdivision_xyz/ProdServerCert arn:aws-cn:iam::123456789012:saml-provider/ADFSProvider arn:aws-cn:iam::123456789012:oidc-provider/GoogleProvider

有关 IAM ARN 的更多信息,请参阅 IAM 用户指南 中的 IAM ARN

AWS IoT

语法:

arn:aws-cn:iot:your-region:account-id:cert/cert-ID arn:aws-cn:iot:your-region:account-id:policy/policy-name arn:aws-cn:iot:your-region:account-id:rule/rule-name arn:aws-cn:iot:your-region:account-id:client/client-id/rule-name

示例:

arn:aws-cn:iot:your-region:123456789012:cert/123a456b789c123d456e789f123a456b789c123d456e789f123a456b789c123c456d7 arn:aws-cn:iot:your-region:123456789012:policy/MyIoTPolicy arn:aws-cn:iot:your-region:123456789012:rule/MyIoTRule arn:aws-cn:iot:your-region:123456789012:client/client101

AWS Key Management Service (AWS KMS)

语法:

arn:aws-cn:kms:region:account-id:key/key-id arn:aws-cn:kms:region:account-id:alias/alias

示例:

arn:aws-cn:kms:us-east-1:123456789012:key/12345678-1234-1234-1234-123456789012 arn:aws-cn:kms:us-east-1:123456789012:alias/example-alias

Amazon Kinesis Data Firehose (Kinesis Data Firehose)

语法:

arn:aws-cn:firehose:region:account-id:deliverystream/delivery-stream-name

示例:

arn:aws-cn:firehose:us-east-1:123456789012:deliverystream/example-stream-name

Amazon Kinesis Data Streams (Kinesis Data Streams)

语法:

arn:aws-cn:kinesis:region:account-id:stream/stream-name arn:aws-cn:kinesis:region:account-id:stream/stream-name/consumer/consumer-name:consumer-creation-timestamp

示例:

arn:aws-cn:kinesis:us-east-1:123456789012:stream/example-stream-name arn:aws-cn:kinesis:us-east-1:123456789012:stream/example-stream-name/consumer/example-consumer-name:1525898737

Amazon Kinesis Data Analytics (Kinesis Data Analytics)

语法:

arn:aws-cn:kinesisanalytics:region:account-id:application/application-name

示例:

arn:aws-cn:kinesisanalytics:us-east-1:123456789012:application/example-application-name

Amazon Kinesis Video Streams (Kinesis 视频流)

语法:

arn:aws-cn:kinesisvideo:region:account-id:application/stream-name/code

示例:

arn:aws-cn:kinesisvideo:us-east-1:123456789012:stream/example-stream-name/0123456789012

AWS Lambda (Lambda)

语法:

arn:aws-cn:lambda:region:account-id:function:function-name arn:aws-cn:lambda:region:account-id:function:function-name:version arn:aws-cn:lambda:region:account-id:function:function-name:alias-name arn:aws-cn:lambda:region:account-id:event-source-mapping:event-source-mapping-id arn:aws-cn:lambda:region:account-id:layer:layer-name arn:aws-cn:lambda:region:account-id:layer:layer-name:version

示例:

arn:aws-cn:lambda:us-east-1:123456789012:function:my-function arn:aws-cn:lambda:us-east-1:123456789012:function:my-function:1 arn:aws-cn:lambda:us-east-1:123456789012:function:my-function:PROD arn:aws-cn:lambda:us-east-1:123456789012:event-source-mapping:fa123456-14a1-4fd2-9fec-83de64ad683de6d47 arn:aws-cn:lambda:us-east-1:123456789012:layer:my-layer arn:aws-cn:lambda:us-east-1:123456789012:layer:my-layer:1

Amazon Lightsail

语法:

arn:aws-cn:lightsail:region:account-id:Instance/instance-id arn:aws-cn:lightsail:region:account-id:RelationalDatabase/relational-database-id arn:aws-cn:lightsail:region:account-id:Disk/disk-id arn:aws-cn:lightsail:region:account-id:StaticIp/static-ip-id arn:aws-cn:lightsail:global:account-id:Domain/domain-id arn:aws-cn:lightsail:region:account-id:LoadBalancer/load-balancer-id arn:aws-cn:lightsail:region:account-id:InstanceSnapshot/instance-snapshot-id arn:aws-cn:lightsail:region:account-id:RelationalDatabaseSnapshot/relational-database-snapshot-id arn:aws-cn:lightsail:region:account-id:DiskSnapshot/disk-snapshot-id arn:aws-cn:lightsail:region:account-id:CloudFormationStackRecord/cloud-formation-stack-record-id arn:aws-cn:lightsail:region:account-id:ExportSnapshotRecord/export-snapshot-record-id arn:aws-cn:lightsail:region:account-id:KeyPair/key-pair-id arn:aws-cn:lightsail:region:account-id:LoadBalancerTlsCertificate/load-balancer-tls-certificate-id

示例:

arn:aws-cn:lightsail:us-east-1:123456789012:Instance/1234568-1234-1234-1234-123456789012 arn:aws-cn:lightsail:us-east-1:123456789012:RelationalDatabase/1234568-1234-1234-1234-123456789012 arn:aws-cn:lightsail:us-east-1:123456789012:Disk/1234568-1234-1234-1234-123456789012 arn:aws-cn:lightsail:us-east-1:123456789012:StaticIp/1234568-1234-1234-1234-123456789012 arn:aws-cn:lightsail:global:123456789012:Domain/1234568-1234-1234-1234-123456789012 arn:aws-cn:lightsail:us-east-1:123456789012:LoadBalancer/1234568-1234-1234-1234-123456789012 arn:aws-cn:lightsail:us-east-1:123456789012:InstanceSnapshot/1234568-1234-1234-1234-123456789012 arn:aws-cn:lightsail:us-east-1:123456789012:RelationalDatabaseSnapshot/1234568-1234-1234-1234-123456789012 arn:aws-cn:lightsail:us-east-1:123456789012:DiskSnapshot/1234568-1234-1234-1234-123456789012 arn:aws-cn:lightsail:us-east-1:123456789012:CloudFormationStackRecord/1234568-1234-1234-1234-123456789012 arn:aws-cn:lightsail:us-east-1:123456789012:ExportSnapshotRecord/1234568-1234-1234-1234-123456789012 arn:aws-cn:lightsail:us-east-1:123456789012:KeyPair/1234568-1234-1234-1234-123456789012 arn:aws-cn:lightsail:us-east-1:123456789012:LoadBalancerTlsCertificate/1234568-1234-1234-1234-123456789012

Amazon Macie

语法:

arn:aws-cn:macie:region:account-id:trigger/triggerID arn:aws-cn:macie:region:account-id:trigger/triggerID/alert/alertID

示例:

arn:aws-cn:macie:us-east-1:123456789012:trigger/example61b3df36bff1dafaf1aa304b0ef1a975 arn:aws-cn:macie:us-east-1:123456789012:trigger/example61b3df36bff1dafaf1aa304b0ef1a975/alert/example8780e9ca227f98dae37665c3fd22b585 arn:aws-cn:macie:us-east-1:123456789012:trigger/behavioral/alert/example8780e9ca227f98dae37665c3fd22b585

Amazon Machine Learning (Amazon ML)

语法:

arn:aws-cn:machinelearning:region:account-id:datasource/datasourceID arn:aws-cn:machinelearning:region:account-id:mlmodel/mlmodelID arn:aws-cn:machinelearning:region:account-id:batchprediction/batchpredictionlID arn:aws-cn:machinelearning:region:account-id:evaluation/evaluationID

示例:

arn:aws-cn:machinelearning:us-east-1:123456789012:datasource/my-datasource-1 arn:aws-cn:machinelearning:us-east-1:123456789012:mlmodel/my-mlmodel arn:aws-cn:machinelearning:us-east-1:123456789012:batchprediction/my-batchprediction arn:aws-cn:machinelearning:us-east-1:123456789012:evaluation/my-evaluation

Amazon Managed Streaming for Apache Kafka (Amazon MSK)

语法:

arn:aws-cn:kafka:region:account-id:cluster/cluster-name/cluster-id
arn:aws-cn:kafka:region:account-id:configuration/configuration-name/configuration-id

示例:

arn:aws-cn:kafka:us-east-1:123456789012:cluster/example-cluster-name/0203456a-abcd-1234-cdef-3be56f8c54ce-2
arn:aws-cn:kafka:us-east-1:123456789012:configuration/example-configuration-name/abcdabcd-1234-abcd-1234-abcd123e8e8e-1

AWS Elemental MediaConnect

语法:

arn:aws-cn:mediaconnect:region:account-id:entitlement:resourceID:resourceName arn:aws-cn:mediaconnect:region:account-id:flow:resourceID:resourceName arn:aws-cn:mediaconnect:region:account-id:output:resourceID:resourceName arn:aws-cn:mediaconnect:region:account-id:source:resourceID:resourceName

示例:

arn:aws-cn:mediaconnect:us-east-1:111111111111:entitlement:1-1a2b3c4d5e6f7g8h-123456abcDEF:EntitlementName arn:aws-cn:mediaconnect:us-east-1:111111111111:flow:1-12345678abcdefgh-654321abcDEF:FlowName arn:aws-cn:mediaconnect:us-east-1:111111111111:output:1-abcDEFGH12345678-abcDEF123456:OutputName arn:aws-cn:mediaconnect:us-east-1:111111111111:source:1-abc12345678defgh-ABCdef654321:SourceName

AWS Elemental MediaConvert

语法:

arn:aws-cn:mediaconvert:region:account-id:jobs/jobID arn:aws-cn:mediaconvert:region:account-id:jobTemplates/jobTemplateName arn:aws-cn:mediaconvert:region:account-id:presets/presetName arn:aws-cn:mediaconvert:region:account-id:queues/queueName

示例:

arn:aws-cn:mediaconvert:us-east-1:111111111111:jobs/0123456789012-abc123 arn:aws-cn:mediaconvert:us-east-1:111111111111:jobTemplates/2345678 arn:aws-cn:mediaconvert:us-east-1:111111111111:presets/System-169_WIFI_1080p arn:aws-cn:mediaconvert:us-east-1:111111111111:queues/default

AWS Elemental MediaLive

语法:

arn:aws-cn:medialive:region:account-id:inputSecurityGroup:inputSecurityGroupID arn:aws-cn:medialive:region:account-id:input:inputID arn:aws-cn:medialive:region:account-id:channel:channelID

示例:

arn:aws-cn:medialive:us-east-1:111111111111:inputSecurityGroup:1234567 arn:aws-cn:medialive:us-east-1:111111111111:input:2345678 arn:aws-cn:medialive:us-east-1:111111111111:channel:3456789

AWS Elemental MediaPackage

语法:

arn:aws-cn:mediapackage:region:account-id:channels/channelID arn:aws-cn:mediapackage:region:account-id:origin_endpoints/originEndpointID

示例:

arn:aws-cn:mediapackage:eu-west-1:111122223333:channels/0a1234bc567890d12efghi3j456k789m arn:aws-cn:mediapackage:eu-west-1:111122223333:origin_endpoints/1b2345cd678901e34fghij4k567m890n

AWS Elemental MediaStore

语法:

arn:aws-cn:mediastore:region:account-id:resourceType/resourceID

示例:

arn:aws-cn:mediastore:us-east-1:111111111111:container/ExampleName/example-folder/folder-segment.ts

AWS Elemental MediaTailor

语法:

arn:aws-cn:mediatailor:region:account-id:playbackConfiguration/Name

示例:

arn:aws-cn:mediatailor:us-east-1:111111111111:playbackConfiguration/exampleConfig

AWS Mobile Hub

语法:

arn:aws-cn:mobilehub:region:account-id:project/projectID

示例:

arn:aws-cn:mobilehub:us-east-1:123456789012:project/a01234567-b012345678-123c-d013456789abc

Amazon MQ

语法:

arn:aws-cn:mq:region:account-id:broker:broker-name:broker-id arn:aws-cn:mq:region:account-id:configuration:configuration-name:configuration-id

示例:

arn:aws-cn:mq:us-east-1:123456789012:broker:MyBroker:b-1234a5b6-78cd-901e-2fgh-3i45j6k178l9 arn:aws-cn:mq:us-east-1:123456789012:configuration:MyConfiguration:c-1234a5b6-78cd-901e-2fgh-3i45j6k178l9

AWS OpsWorks for Chef Automate 和 AWS OpsWorks for Puppet Enterprise

语法:

arn:aws-cn:opsworks-cm:us-east-1:master-account-id:server/server-name-random-ID-suffix/server-id

示例:

arn:aws-cn:opsworks-cm:us-east-1:123456789012:server/TestServer-0123456789/EXAMPLEa-1199-43a6-aa00-8a000EXAMPLE

AWS OpsWorks 堆栈

语法:

arn:aws-cn:opsworks:us-east-1:master-account-id:stack/stack-id arn:aws-cn:opsworks:us-east-1:master-account-id:layer/layer-id arn:aws-cn:opsworks:us-east-1:master-account-id:instance/opsworks-instance-id arn:aws-cn:opsworks:us-east-1:master-account-id:app/opsworks-app-id

示例:

arn:aws-cn:opsworks:us-east-1:123456789012:stack/EXAMPLEe-aa21-4z92-a110-a4a44EXAMPLE arn:aws-cn:opsworks:us-east-1:123456789012:layer/EXAMPLEe-aa21-4z92-a110-a4a44EXAMPLE arn:aws-cn:opsworks:us-east-1:123456789012:instance/EXAMPLEe-aa21-4z92-a110-a4a44EXAMPLE arn:aws-cn:opsworks:us-east-1:123456789012:app/EXAMPLEe-aa21-4z92-a110-a4a44EXAMPLE

AWS Organizations

语法:

arn:aws-cn:organizations::master-account-id:organization/o-organization-id arn:aws-cn:organizations::master-account-id:root/o-organization-id/r-root-id arn:aws-cn:organizations::master-account-id:account/o-organization-id/account-id arn:aws-cn:organizations::master-account-id:ou/o-organization-id/ou-organizational-unit-id arn:aws-cn:organizations::master-account-id:policy/o-organization-id/policy-type/p-policy-id arn:aws-cn:organizations::master-account-id:handshake/o-organization-id/handshake-type/h-handshake-id

示例:

arn:aws-cn:organizations::123456789012:organization/o-a1b2c3d4e5example arn:aws-cn:organizations::123456789012:root/o-a1b2c3d4e5/r-f6g7h8i9j0example arn:aws-cn:organizations::123456789012:account/o-a1b2c3d4e5/123456789012 arn:aws-cn:organizations::123456789012:ou/o-a1b2c3d4e5/ou-1a2b3c-k9l8m7n6o5example arn:aws-cn:organizations::123456789012:policy/o-a1b2c3d4e5/service_control_policy/p-p4q3r2s1t0example arn:aws-cn:organizations::123456789012:handshake/o-a1b2c3d4e5/invite/h-u2v4w5x8y0example

Amazon Pinpoint

语法:

arn:aws-cn:mobiletargeting:us-east-1:account-id:apps/appId arn:aws-cn:mobiletargeting:us-east-1:account-id:apps/appId/campaigns/campaignId arn:aws-cn:mobiletargeting:us-east-1:account-id:apps/appId/segments/segmentId

示例:

arn:aws-cn:mobiletargeting:us-east-1:123456789012:apps/0d72ff0905e7f8b2b879fe7744d4952a9b arn:aws-cn:mobiletargeting:us-east-1:123456789012:apps/0d72ff0905e7f8b2b879fe7744d4952a9b/campaigns/8c95f63b24089f85819443be7c92d7 arn:aws-cn:mobiletargeting:us-east-1:123456789012:apps/0d72ff0905e7f8b2b879fe7744d4952a9b/segments/6cdc025ba495672bb0aea4983afebf

Amazon Polly

语法:

arn:aws-cn:polly:region:account-id:lexicon/LexiconName

示例:

arn:aws-cn:polly:us-east-1:123456789012:lexicon/myLexicon

Amazon Redshift

语法:

arn:aws-cn:redshift:region:account-id:cluster:cluster-name arn:aws-cn:redshift:region:account-id:dbname:cluster-name/database-name arn:aws-cn:redshift:region:account-id:dbuser:cluster-name/database-user-name arn:aws-cn:redshift:region:account-id:dbgroup:cluster-name/database-group-name arn:aws-cn:redshift:region:account-id:parametergroup:parameter-group-name arn:aws-cn:redshift:region:account-id:securitygroup:security-group-name arn:aws-cn:redshift:region:account-id:snapshot:cluster-name/snapshot-name arn:aws-cn:redshift:region:account-id:subnetgroup:subnet-group-name

示例:

arn:aws-cn:redshift:us-east-1:123456789012:cluster:my-cluster arn:aws-cn:redshift:us-east-1:123456789012:dbname:my-cluster/my-database arn:aws-cn:redshift:us-east-1:123456789012:dbuser:my-cluster/my-database-user arn:aws-cn:redshift:us-east-1:123456789012:dbgroup:my-cluster/my-database-group arn:aws-cn:redshift:us-east-1:123456789012:parametergroup:my-parameter-group arn:aws-cn:redshift:us-east-1:123456789012:securitygroup:my-public-group arn:aws-cn:redshift:us-east-1:123456789012:snapshot:my-cluster/my-snapshot20130807 arn:aws-cn:redshift:us-east-1:123456789012:subnetgroup:my-subnet-10

Amazon Relational Database Service (Amazon RDS)

仅在数据库实例具有标签时,才能在 Amazon RDS 中使用 ARN。有关更多信息,请参阅 Amazon RDS 用户指南 中的为数据库实例添加标签

语法:

arn:aws-cn:rds:region:account-id:db:db-instance-name arn:aws-cn:rds:region:account-id:snapshot:snapshot-name arn:aws-cn:rds:region:account-id:cluster:db-cluster-name arn:aws-cn:rds:region:account-id:cluster-snapshot:cluster-snapshot-name arn:aws-cn:rds:region:account-id:og:option-group-name arn:aws-cn:rds:region:account-id:pg:parameter-group-name arn:aws-cn:rds:region:account-id:cluster-pg:cluster-parameter-group-name arn:aws-cn:rds:region:account-id:secgrp:security-group-name arn:aws-cn:rds:region:account-id:subgrp:subnet-group-name arn:aws-cn:rds:region:account-id:es:subscription-name

示例:

arn:aws-cn:rds:us-east-1:123456789012:db:mysql-db-instance1 arn:aws-cn:rds:us-east-1:123456789012:snapshot:my-snapshot2 arn:aws-cn:rds:us-east-1:123456789012:cluster:my-cluster1 arn:aws-cn:rds:us-east-1:123456789012:cluster-snapshot:cluster1-snapshot7 arn:aws-cn:rds:us-east-1:123456789012:og:mysql-option-group1 arn:aws-cn:rds:us-east-1:123456789012:pg:mysql-repl-pg1 arn:aws-cn:rds:us-east-1:123456789012:cluster-pg:aurora-pg3 arn:aws-cn:rds:us-east-1:123456789012:secgrp:dev-secgrp2 arn:aws-cn:rds:us-east-1:123456789012:subgrp:prod-subgrp1 arn:aws-cn:rds:us-east-1:123456789012:es:monitor-events2

AWS 资源组

在 AWS 资源组中,唯一可用的资源是组。组具有与其关联的唯一 Amazon 资源名称 (ARN)。组是特定于区域的,位于账户内。有关资源组的更多信息,请参阅 AWS 资源组用户指南

语法:

arn:aws-cn:resource-groups:region:account:group/group-name

示例:

arn:aws-cn:resource-groups:us-west-2:123456789012:group/MyExampleGroup

AWS RoboMaker

语法:

arn:aws-cn:robomaker:region:account-id:robot-application/robotApplicationName/createdOnEpoch arn:aws-cn:robomaker:region:account-id:simulation-application/simulationApplicationName/createdOnEpoch arn:aws-cn:robomaker:region:account-id:simulation-job/simulationJobId arn:aws-cn:robomaker:region:account-id:deployment-job/deploymentJobId arn:aws-cn:robomaker:region:account-id:robot/robotName/createdOnEpoch arn:aws-cn:robomaker:region:account-id:deployment-fleet/fleetName/createdOnEpoch

示例:

arn:aws-cn:robomaker:us-east-1:123456789012:robot-application/helloWorldRobotApplication/1546541198985 arn:aws-cn:robomaker:us-east-1:123456789012:simulation-application/helloWorldSimulationApplication/1546541192487 arn:aws-cn:robomaker:us-east-1:123456789012:simulation-job/sim-g8h6tzlmblg7 arn:aws-cn:robomaker:us-east-1:123456789012:deployment-job/deployment-4t9g6rp25zdb arn:aws-cn:robomaker:us-east-1:123456789012:robot/helloWorldRobot/1546541197111 arn:aws-cn:robomaker:us-east-1:123456789012:deployment-fleet/helloWorldFleet/1546541199833

Amazon Route 53

语法:

arn:aws-cn:route53:::hostedzone/zoneid arn:aws-cn:route53:::change/change-id arn:aws-cn:route53::account-id:domain/domain-name arn:aws-cn:route53resolver:region:account-id:resolver-rule/rule-id arn:aws-cn:route53resolver:region:account-id:resolver-endpoint/endpoint-id

Amazon Route 53 的 ARN 不需要账号或区域。

示例:

arn:aws-cn:route53:::hostedzone/Z148QEXAMPLE8V arn:aws-cn:route53:::change/C2RDJ5EXAMPLE2 arn:aws-cn:route53:::change/* arn:aws-cn:route53::123456789012:domain/example.com arn:aws-cn:route53resolver:us-west-2:123456789012:resolver-rule/rslvr-rr-5328a0899aexample arn:aws-cn:route53resolver:us-west-2:123456789012:resolver-endpoint/rslvr-in-60b9fd8fdbexample

Amazon Route 53 自动命名已作为单独的服务 AWS Cloud Map 发布。请参阅 AWS Cloud Map

Amazon SageMaker

语法:

arn:aws-cn:sagemaker:region:account-id:notebook-instance:notebookInstanceName arn:aws-cn:sagemaker:region:account-id:notebook-instance-lifecycle-config:notebookInstanceLifecycleConfigName arn:aws-cn:sagemaker:region:account-id:training-job:trainingJobName arn:aws-cn:sagemaker:region:account-id:model:modelName arn:aws-cn:sagemaker:region:account-id:endpoint:endpointName arn:aws-cn:sagemaker:region:account-id:endpoint-config:endpointConfigName arn:aws-cn:sagemaker:region:account-id:hyper-parameter-tuning-job:hyperParameterTuningJobName arn:aws-cn:sagemaker:region:account-id:transform-job:transformJobName

示例:

arn:aws-cn:sagemaker:us-east-1:123456789012:notebook-instance:my-notebookInstance-1 arn:aws-cn:sagemaker:us-east-1:123456789012:notebook-instance-lifecycle-config:my-notebookInstanceLifecycleConfig-1 arn:aws-cn:sagemaker:us-east-1:123456789012:training-job:my-trainingJob-1 arn:aws-cn:sagemaker:us-east-1:123456789012:model:my-mlModel-1 arn:aws-cn:sagemaker:us-east-1:123456789012:endpoint:my-endpoint-1 arn:aws-cn:sagemaker:us-east-1:123456789012:endpoint-config:my-endpointConfig-1 arn:aws-cn:sagemaker:us-east-1:123456789012:hyper-parameter-tuning-job:my-hp-tuningJob-1 arn:aws-cn:sagemaker:us-east-1:123456789012:transform-job:my-transformJob-1

AWS Secrets Manager

语法:

arn:aws-cn:secretsmanager:region:account_id:secret:path/friendly_secret_name-uniqueness_code

每个密钥都包括一个可选路径、由用户提供的密钥友好名称,最后是一个短横线,后跟一个由 AWS 生成的 6 字符随机代码。

示例:

arn:aws-cn:secretsmanager:us-east-1:123456789012:secret:myfolder/MyFirstSecret-ocq1Wq arn:aws-cn:secretsmanager:us-east-1:123456789012:secret:another_secret_name-??????

注意

上面给出的第二个示例显示了一个通配符机制,该机制用于匹配由 Secrets Manager 分配的六个随机字符。有关详细信息和注意事项,请参阅 AWS Secrets Manager 用户指南 中的限制对特定密钥的访问

Service Quotas

语法:

arn:aws-cn:servicequotas:region:account_id:servicecode/quotacode

示例:

arn:aws-cn:servicequotas:us-east-1:123456789012:servicequotas/L-7AA14F8F arn:aws-cn:servicequotas:us-east-1:123456789012:elasticbeanstalk/L-1CEABD17

AWS Serverless Application Repository

语法:

arn:aws-cn:serverlessrepo:region:account-id:applications/application-name arn:aws-cn:serverlessrepo:region:account-id:applications/application-name/versions/symantic-version

示例:

arn:aws-cn:serverlessrepo:us-east-1:123456789012:applications/myApp arn:aws-cn:serverlessrepo:us-east-1:123456789012:applications/myApp/versions/1.0.0

Amazon Simple Email Service (Amazon SES)

在 Amazon SES 中,ARN 最常见的用途是用于设置发送授权。有关更多信息,请参阅 Amazon Simple Email Service 开发人员指南 中的使用 Amazon SES 的发送授权

语法:

arn:aws-cn:ses:region:account-id:identity/identity

示例:

arn:aws-cn:ses:us-east-1:123456789012:identity/example.com arn:aws-cn:ses:us-east-1:123456789012:identity/sender@example.net

Amazon Simple Notification Service (Amazon SNS)

语法:

arn:aws-cn:sns:region:account-id:topicname arn:aws-cn:sns:region:account-id:topicname:subscriptionid

示例:

arn:aws-cn:sns:*:123456789012:my_corporate_topic arn:aws-cn:sns:us-east-1:123456789012:my_corporate_topic:02034b43-fefa-4e07-a5eb-3be56f8c54ce

Amazon Simple Queue Service (Amazon SQS)

语法:

arn:aws-cn:sqs:region:account-id:queuename

示例:

arn:aws-cn:sqs:us-east-1:123456789012:queue1

Amazon Simple Storage Service (Amazon S3)

语法:

arn:aws-cn:s3:::bucket_name arn:aws-cn:s3:::bucket_name/key_name

注意

Amazon S3 的 ARN 不需要账号或区域。如果您为某一策略指定 ARN,您也可在 ARN 的相对 ID 段使用通配符 “*” 字符。

示例:

arn:aws-cn:s3:::my_corporate_bucket arn:aws-cn:s3:::my_corporate_bucket/exampleobject.png arn:aws-cn:s3:::my_corporate_bucket/* arn:aws-cn:s3:::my_corporate_bucket/Development/*

有关更多信息,请参阅在策略中指定资源 ,位于 Amazon Simple Storage Service 开发人员指南 中。

Amazon Simple Workflow Service (Amazon SWF)

语法:

arn:aws-cn:swf:region:account-id:/domain/domain_name

示例:

arn:aws-cn:swf:us-east-1:123456789012:/domain/department1 arn:aws-cn:swf:*:123456789012:/domain/*

AWS Step Functions

语法:

arn:aws-cn:states:region:account-id:activity:activityName arn:aws-cn:states:region:account-id:stateMachine:stateMachineName arn:aws-cn:states:region:account-id:execution:stateMachineName:executionName

示例:

arn:aws-cn:states:us-east-1:123456789012:activity:HelloActivity arn:aws-cn:states:us-east-1:123456789012:stateMachine:HelloStateMachine arn:aws-cn:states:us-east-1:123456789012:execution:HelloStateMachine:HelloStateMachineExecution

AWS Storage Gateway

语法:

arn:aws-cn:storagegateway:region:account-id:gateway/gateway-id arn:aws-cn:storagegateway:region:account-id:share/share-id arn:aws-cn:storagegateway:region:account-id:gateway/gateway-id/volume/volume-id arn:aws-cn:storagegateway:region:account-id:tape/tapebarcode arn:aws-cn:storagegateway:region:account-id:gateway/gateway-id/target/iSCSItarget arn:aws-cn:storagegateway:region:account-id:gateway/gateway-id/device/vtldevice

示例:

arn:aws-cn:storagegateway:us-east-1:123456789012:gateway/sgw-12A3456B arn:aws-cn:storagegateway:us-east-1:123456789012:share/share-17A34572 arn:aws-cn:storagegateway:us-east-1:123456789012:gateway/sgw-12A3456B/volume/vol-1122AABB arn:aws-cn:storagegateway:us-east-1:123456789012:tape/AMZNC8A26D arn:aws-cn:storagegateway:us-east-1:123456789012:gateway/sgw-12A3456B/target/iqn.1997-05.com.amazon:vol-1122AABB arn:aws-cn:storagegateway:us-east-1:123456789012:gateway/sgw-12A3456B/device/AMZN_SGW-FF22CCDD_TAPEDRIVE_00010

注意

对于每种 AWS Storage Gateway 资源可以指定一个通配符 (*)。

AWS Systems Manager

语法:

arn:aws-cn:ssm:region:account-id:document/document_name arn:aws-cn:ssm:region:account-id:parameter/parameter_name arn:aws-cn:ssm:region:account-id:patchbaseline/baseline_id arn:aws-cn:ssm:region:account-id:maintenancewindow/window_id arn:aws-cn:ssm:region:account-id:automation-execution/execution_id arn:aws-cn:ssm:region:account-id:automation-Activity/activity_name arn:aws-cn:ssm:region:account-id:automation-definition/definitionName:version arn:aws-cn:ssm:region:account-id:managed-instance/instance_id arn:aws-cn:ssm:region:account-id:managed-instance-inventory/instance_id arn:aws-cn:ssm:region:account-id:opsitem/opsitem_id

示例:

arn:aws-cn:ssm:us-east-1:123456789012:document/highAvailabilityServerSetup arn:aws-cn:ssm:us-east-1:123456789012:parameter/myParameterName arn:aws-cn:ssm:us-east-1:123456789012:patchbaseline/pb-12345678901234567 arn:aws-cn:ssm:us-east-1:123456789012:maintenancewindow/mw-12345678901234567 arn:aws-cn:ssm:us-east-1:123456789012:automation-execution/123456-6789-1a2b3-c4d5-e1a2b3c4d arn:aws-cn:ssm:us-east-1:123456789012:automation-activity/myActivityName arn:aws-cn:ssm:us-east-1:123456789012:automation-definition/myDefinitionName:1 arn:aws-cn:ssm:us-east-1:123456789012:managed-instance/mi-12345678901234567 arn:aws-cn:ssm:us-east-1:123456789012:managed-instance-inventory/i-12345661 arn:aws-cn:ssm:us-east-1:123456789012:opsitem/oi-33e35052cca2

AWS Transfer for SFTP

语法:

arn:aws-cn:transfer:region:account-id:server/server-id arn:aws-cn:transfer:region:account-id:user/server-id/username

示例:

arn:aws-cn:transfer:us-east-1:123456789012:server/s-01234567890abcdef arn:aws-cn:transfer:us-east-1:123456789012:user/s-01234567890abcdef/user1

AWS Trusted Advisor

语法:

arn:aws-cn:trustedadvisor:*:account-id:checks/categorycode/checkid

示例:

arn:aws-cn:trustedadvisor:*:123456789012:checks/fault_tolerance/BueAdJ7NrP

AWS WAF

语法,全局 WAF(用于 CloudFront):

arn:aws-cn:waf::account-id:resource-type/resource-id

语法,区域性 WAF(用于 Application Load Balancer):

arn:aws-cn:waf-regional:region:account-id:resource-type/resource-id

示例:

arn:aws-cn:waf::123456789012:rule/41b5b052-1e4a-426b-8149-3595be6342c2 arn:aws-cn:waf::123456789012:webacl/3bffd3ed-fa2e-445e-869f-a6a7cf153fd3 arn:aws-cn:waf::123456789012:ipset/3f74bd8c-f046-4970-a1a7-41aa52e05480 arn:aws-cn:waf::123456789012:bytematchset/d131bc0b-57be-4536-af1d-4894fd28acc4 arn:aws-cn:waf-regional:us-east-1:123456789012:rule/41b5b052-1e4a-426b-8149-3595be6342c2 arn:aws-cn:waf-regional:us-east-1:123456789012:webacl/3bffd3ed-fa2e-445e-869f-a6a7cf153fd3 arn:aws-cn:waf-regional:us-east-1:123456789012:ipset/3f74bd8c-f046-4970-a1a7-41aa52e05480 arn:aws-cn:waf-regional:us-east-1:123456789012:bytematchset/d131bc0b-57be-4536-af1d-4894fd28acc4

语法:

arn:aws-cn:worklink::account-id:fleet/fleet-name

示例:

arn:aws-cn:worklink::123456789012:fleet/FleetName

ARN 中的路径

一些服务允许您为资源名称指定路径。例如,在 Amazon S3 中,资源标识符是一个对象名称,它可以包含斜杠 (/) 来形成路径。同样,IAM 用户名称和组名也可以包含路径。

在某些情况下,路径可以包含一个通配符,即星号 (*)。例如,当您在编写 IAM 策略时,如果希望在 Resource 元素中指定包含路径 product_1234 的所有 IAM 用户,则可以使用通配符,如下所示:

arn:aws-cn:iam::123456789012:user/Development/product_1234/*

同样,在 IAM 策略的 Resource 元素中,您可以在 ARN 的末尾指定 user/* 来表示所有用户或者指定 group/* 来表示所有组,如以下示例所示:

"Resource":"arn:aws-cn:iam::123456789012:user/*" "Resource":"arn:aws-cn:iam::123456789012:group/*"

在基于资源的策略或角色信任策略的 Principal 元素中,您不能使用通配符指定所有用户。任何策略都不支持将组作为委托人。

以下示例显示了 Amazon S3 存储桶的 ARN,其中的资源名称包含一个路径:

arn:aws-cn:s3:::my_corporate_bucket/* arn:aws-cn:s3:::my_corporate_bucket/Development/*

您不能在 ARN 指定资源类型的部分使用通配符,比如 IAM ARN 中的 user 一词。

禁止执行下列操作:

arn:aws-cn:iam::123456789012:u*

AWS 服务命名空间

当创建 IAM 策略或使用 Amazon 资源名称 (ARN) 时,您可以使用命名空间 来标识 AWS 服务。例如,Amazon S3 的命名空间是 s3,Amazon EC2 的命名空间是 ec2。您可以使用命名空间来标识操作和资源。

以下示例显示了 IAM 策略中 Action 元素的值,以及 ResourceCondition 元素中的值使用命名空间来针对操作和资源标识服务。

{ "Version": "2012-10-17", "Statement": [ { "Effect": "Allow", "Action": "ec2:*", "Resource": [ "arn:aws-cn:ec2:us-west-2:123456789012:customer-gateway/*", "arn:aws-cn:ec2:us-west-2:123456789012:dhcp-options/*", "arn:aws-cn:ec2:us-west-2::image/*", "arn:aws-cn:ec2:us-west-2:123456789012:instance/*", "arn:aws-cn:iam::123456789012:instance-profile/*", "arn:aws-cn:ec2:us-west-2:123456789012:internet-gateway/*", "arn:aws-cn:ec2:us-west-2:123456789012:key-pair/*", "arn:aws-cn:ec2:us-west-2:123456789012:network-acl/*", "arn:aws-cn:ec2:us-west-2:123456789012:network-interface/*", "arn:aws-cn:ec2:us-west-2:123456789012:placement-group/*", "arn:aws-cn:ec2:us-west-2:123456789012:route-table/*", "arn:aws-cn:ec2:us-west-2:123456789012:security-group/*", "arn:aws-cn:ec2:us-west-2::snapshot/*", "arn:aws-cn:ec2:us-west-2:123456789012:subnet/*", "arn:aws-cn:ec2:us-west-2:123456789012:volume/*", "arn:aws-cn:ec2:us-west-2:123456789012:vpc/*", "arn:aws-cn:ec2:us-west-2:123456789012:vpc-peering-connection/*" ] }, { "Effect": "Allow", "Action": "s3:*", "Resource": "arn:aws-cn:s3:::example_bucket/marketing/*" }, { "Effect": "Allow", "Action": "s3:ListBucket*", "Resource": "arn:aws-cn:s3:::example_bucket", "Condition": {"StringLike": {"s3:prefix": "marketing/*"}} } ] }

下表包含各 AWS 服务的命名空间。

服务 命名空间
Alexa for Business a4b
API 网关 apigateway
Application Auto Scaling application-autoscaling
AWS Application Discovery Service discovery
Amazon AppStream appstream
AWS AppSync appsync
AWS Artifact artifact
Amazon Athena athena
Auto Scaling Plans autoscaling-plans
AWS Batch batch
AWS Billing and Cost Management aws-portal
AWS Budgets budgets
AWS Certificate Manager (ACM) acm
AWS Certificate Manager 私有证书颁发机构 acm-pca
Amazon Chime chime
AWS Cloud9 cloud9
Amazon Cloud Directory clouddirectory
AWS CloudFormation cloudformation
Amazon CloudFront cloudfront
AWS CloudHSM cloudhsm
AWSAWS Cloud Map servicediscovery
Amazon CloudSearch cloudsearch
AWS CloudTrail cloudtrail
Amazon CloudWatch cloudwatch
Amazon CloudWatch Events events
Amazon CloudWatch Logs logs
CodeBuild codebuild
AWS CodeCommit codecommit
AWS CodeDeploy codedeploy
AWS CodePipeline codepipeline
AWS Code Signing for Amazon FreeRTOS signer
AWS CodeStar codestar
Amazon Cognito 您的用户池 cognito-idp
Amazon Cognito 联合身份 cognito-identity
Amazon Cognito Sync cognito-sync
Amazon Comprehend comprehend
AWS Config config
Amazon Connect connect
AWS 成本和使用率报告 cur
AWS Cost Explorer 服务 ce
AWS Data Pipeline datapipeline
AWS Database Migration Service (AWS DMS) dms
AWS Device Farm devicefarm
AWS Direct Connect directconnect
AWS Directory Service ds
Amazon DocumentDB rds
Amazon DynamoDB dynamodb
Amazon DynamoDB Accelerator (DAX) dax
Amazon EC2 Auto Scaling autoscaling
Amazon Elastic Compute Cloud (Amazon EC2) ec2
Amazon Elastic Container Registry (Amazon ECR) ecr
Amazon Elastic Container Service (Amazon ECS) ecs
Amazon Elastic Kubernetes Service (Amazon EKS) eks
AWS Elastic Beanstalk elasticbeanstalk
Amazon Elastic File System (Amazon EFS) elasticfilesystem
Elastic Load Balancing elasticloadbalancing
Amazon EMR elasticmapreduce
Amazon Elastic Transcoder elastictranscoder
Amazon ElastiCache elasticache
Amazon Elasticsearch Service (Amazon ES) es
AWS Firewall Manager fms
Amazon FreeRTOS freertos
Amazon GameLift gamelift
Amazon S3 Glacier glacier
AWS Global Accelerator globalaccelerator
AWS Glue glue
AWS IoT Greengrass greengrass
AWS Ground Station groundstation
Amazon GuardDuty guardduty
AWS Health / Personal Health Dashboard health
AWS Identity and Access Management (IAM) iam
AWS Import/Export importexport
Amazon Inspector inspector
AWS IoT iot
AWS IoT Analytics iotanalytics
AWSIoT 1-Click iot1click
AWS Key Management Service (AWS KMS) kms
Amazon Kinesis Data Analytics kinesisanalytics
Amazon Kinesis Data Firehose firehose
Amazon Kinesis Data Streams kinesis
Amazon Kinesis Video Streams kinesisvideo
AWS Lambda lambda
Amazon Lex lex
Amazon Lightsail lightsail
Amazon Macie macie
Amazon Machine Learning machinelearning
AWS Marketplace aws-marketplace
AWS Marketplace Management Portal aws-marketplace-management
Amazon Mechanical Turk mechanicalturk
Amazon Mechanical Turk Crowd crowd
AWS Elemental MediaConnect mediaconnect
AWS Elemental MediaConvert mediaconvert
AWS Elemental MediaLive medialive
AWS Elemental MediaPackage mediapackage
AWS Elemental MediaStore mediastore
AWS Elemental MediaTailor mediatailor
Amazon Message Delivery Service ec2message
AWS Migration Hub mgh
Amazon Mobile Analytics mobileanalytics
AWS Mobile Hub mobilehub
Amazon MQ mq
AWS OpsWorks opsworks
AWS OpsWorks for Chef Automate 或者 AWS OpsWorks for Puppet Enterprise opsworks-cm
AWS Organizations organizations
Amazon Personalize personalize
Amazon Pinpoint mobiletargeting
Amazon Polly polly
AWS 价目表 pricing
Amazon QuickSight quicksight
Amazon Redshift redshift
Amazon Rekognition rekognition
Amazon Relational Database Service (Amazon RDS) rds
AWS 资源组 resource-groups
Amazon Resource Group Tagging API tag
Amazon Route 53 route53
Amazon Route 53 域 route53domains
Amazon Route 53 解析程序 route53resolver
Amazon SageMaker sagemaker
AWS Secrets Manager secretsmanager
AWS Security Token Service (AWS STS) sts
AWS Serverless Application Repository serverlessrepo
AWS Service Catalog servicecatalog
AWS Shield shield
AWS Shield Advanced shield
AWS SFTP transfer
Amazon Simple Email Service (Amazon SES) ses
Amazon Simple Notification Service (Amazon SNS) sns
Amazon Simple Queue Service (Amazon SQS) sqs
Amazon Simple Storage Service (Amazon S3) s3
Amazon Simple Workflow Service (Amazon SWF) swf
Amazon SimpleDB sdb
AWS Single Sign-On sso
AWS Snowball snowball
AWS Step Functions states
AWS Storage Gateway storagegateway
Amazon Sumerian sumerian
AWS Support support
AWS Systems Manager ssm
Amazon Textract textract
Amazon Transcribe transcribe
Amazon Translate translate
AWS Trusted Advisor trustedadvisor
Amazon Virtual Private Cloud (Amazon VPC) ec2
AWS WAF waf
AWS WAF 区域 waf-regional
Amazon WorkDocs workdocs
Amazon WorkLink worklink
Amazon WorkMail workmail
Amazon WorkSpaces workspaces
Amazon WorkSpaces Application Manager wam
AWS X-Ray xray