2015-09-29 63 views
0

我需要創建一個策略IAM停止或終止只具有特定標籤(多個實例)的情況下,我寫了這個:IAM,應用策略只標記實例

{ 
      "Action": [ 
       "ec2:StopInstances", 
       "ec2:TerminateInstances" 
      ], 
      "Effect": "Allow", 
      "Resource": "*", 
      "Condition": { 
       "StringEquals": { 
        "ec2:ResourceTag/Name": "tag1", 
        "ec2:ResourceTag/Name": "tag2", 
        "ec2:ResourceTag/Name": "tag3" 
       } 
      } 
     }, 

但形式是無效的,只能寫入一個字符串ec2:ResourceTag/Name。如何停止和終止具有不同標記Name的實例?

回答

1

嘗試以下操作:

"Condition": { 
    "StringEquals": { 
    "ec2:ResourceTag/Name": ["tag1","tag2","tag3"] 
    } 
} 
+0

感謝的我省略'[]' – hellb0y77