设置查看计划查询历史记录的权限
要允许用户查看计划查询历史记录,请编辑 IAM 角色(随计划指定)信任关系以添加权限。
以下是 IAM 角色中的信任策略示例,该策略允许 IAM 用户 myIAMusername
查看计划查询历史记录。您可以选择允许 IAM 角色拥有 sts:AssumeRole
权限,而不是允许 IAM 用户拥有此权限。
{ "Version": "2012-10-17", "Statement": [ { "Effect": "Allow", "Principal": { "Service": [ "redshift.amazonaws.com", "redshift-serverless.amazonaws.com" ] }, "Action": "sts:AssumeRole" }, { "Effect": "Allow", "Principal": { "Service": "events.amazonaws.com" }, "Action": "sts:AssumeRole" }, { "Sid": "AssumeRole", "Effect": "Allow", "Principal": { "AWS": "arn:aws:iam::
123456789012
:user/myIAMusername
" }, "Action": "sts:AssumeRole" } ] }