Skip to content

/AWS1/CL_EC2=>DISASSOCENCLAVECERTIAMROLE()

About DisassociateEnclaveCertificateIamRole

Disassociates an IAM role from an Certificate Manager (ACM) certificate. Disassociating an IAM role from an ACM certificate removes the Amazon S3 object that contains the certificate, certificate chain, and encrypted private key from the Amazon S3 bucket. It also revokes the IAM role's permission to use the KMS key used to encrypt the private key. This effectively revokes the role's permission to use the certificate.

Method Signature

IMPORTING

Required arguments:

IV_CERTIFICATEARN TYPE /AWS1/EC2CERTIFICATEID /AWS1/EC2CERTIFICATEID

The ARN of the ACM certificate from which to disassociate the IAM role.

IV_ROLEARN TYPE /AWS1/EC2ROLEID /AWS1/EC2ROLEID

The ARN of the IAM role to disassociate.

Optional arguments:

IV_DRYRUN TYPE /AWS1/EC2BOOLEAN /AWS1/EC2BOOLEAN

Checks whether you have the required permissions for the action, without actually making the request, and provides an error response. If you have the required permissions, the error response is DryRunOperation. Otherwise, it is UnauthorizedOperation.

RETURNING

OO_OUTPUT TYPE REF TO /AWS1/CL_EC2DISASCENCLCRTIAM01 /AWS1/CL_EC2DISASCENCLCRTIAM01