2015-09-29 57 views
0

我需要创建一个策略IAM停止或终止只具有特定标签(多个实例)的情况下,我写了这个:IAM,应用策略只标记实例

{ 
      "Action": [ 
       "ec2:StopInstances", 
       "ec2:TerminateInstances" 
      ], 
      "Effect": "Allow", 
      "Resource": "*", 
      "Condition": { 
       "StringEquals": { 
        "ec2:ResourceTag/Name": "tag1", 
        "ec2:ResourceTag/Name": "tag2", 
        "ec2:ResourceTag/Name": "tag3" 
       } 
      } 
     }, 

但形式是无效的,只能写入一个字符串ec2:ResourceTag/Name。如何停止和终止具有不同标记Name的实例?

回答

1

尝试以下操作:

"Condition": { 
    "StringEquals": { 
    "ec2:ResourceTag/Name": ["tag1","tag2","tag3"] 
    } 
} 
+0

感谢的我省略'[]' – hellb0y77