Restricted resources

Learn about some restricted resources in which IAM role’s trust policy is required to allow actions explicitly.

In the S3 bucket example, either the identity- or the resource-based policy is enough to give access. This is the case for most resource types, but there are exceptions. An IAM role’s trust policy needs to allow the action explicitly, it’s not ...