Slide 29
Slide 29 text
{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Action": ["ssm:StartSession"],
"Resource": "*",
"Condition": {
"StringLike": {
"ssm:resourceTag/Name": ["Production"],
"ssm:resourceTag/Name": ["Develop"]
}
}
}
]
}
インスタンス毎にログインできるIAMユーザーを指定する
https://docs.aws.amazon.com/ja_jp/systems-manager/latest/userguide/getting-started-restrict-acc
ess-examples.html
{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Action": ["ssm:StartSession"],
"Resource": "*",
"Condition": {
"StringLike": {
"ssm:resourceTag/Name": ["Develop"]
}
}
}
]
}
UserA UserB
29