Вход на сайт

Просмотр новости

Найдите то, что Вас интересует

IAM Policy Autopilot now supports Terraform plan files

Дата публикации: 18-08-2026 17:19:00

IAM Policy Autopilot can now generate baseline IAM policies directly from a Terraform plan file. IAM Policy Autopilot is an open source tool, launched at re:Invent 2025, that analyzes your code to deterministically create scoped-down IAM policies you can refine as your application evolves, reducing the time you spend writing IAM policies and troubleshooting access issues. Until now the tool analyzed application source code, but it was not possible to generate policies for deploying AWS infrastructure defined via Infrastructure as Code.
Now you can pass a Terraform plan file as input, and IAM Policy Autopilot applies a deterministic analysis to produce a policy scoped to the CRUD functions of the resources in that plan. The generated policies reference specific resource ARNs rather than wildcards, when possible. Supporting policy generation for deploying AWS infrastructure defined via Terraform has been the most requested capability since IAM Policy Autopilot launched, and it complements the existing Terraform-aware analysis, which cross-references Terraform resource definitions with SDK calls in your application code to resolve ARNs.
IAM Policy Autopilot is available at no additional cost and runs on your own machine. To get started, visit the IAM Policy Autopilot GitHub repository.

Основное содержимое страницы с новостью.

IAM Policy Autopilot can now generate baseline IAM policies directly from a Terraform plan file. IAM Policy Autopilot is an open source tool, launched at re:Invent 2025, that analyzes your code to deterministically create scoped-down IAM policies you can refine as your application evolves, reducing the time you spend writing IAM policies and troubleshooting access issues. Until now the tool analyzed application source code, but it was not possible to generate policies for deploying AWS infrastructure defined via Infrastructure as Code.

Now you can pass a Terraform plan file as input, and IAM Policy Autopilot applies a deterministic analysis to produce a policy scoped to the CRUD functions of the resources in that plan. The generated policies reference specific resource ARNs rather than wildcards, when possible. Supporting policy generation for deploying AWS infrastructure defined via Terraform has been the most requested capability since IAM Policy Autopilot launched, and it complements the existing Terraform-aware analysis, which cross-references Terraform resource definitions with SDK calls in your application code to resolve ARNs.

IAM Policy Autopilot is available at no additional cost and runs on your own machine. To get started, visit the IAM Policy Autopilot GitHub repository.

Схожие новости

#Наименование новостиТональностьИнформативностьДата публикации
1AWS Identity and Access Management streamlines assignment of IAM roles to workforce users with account access manager02.510-08-2026
2AWS Transform for migrations automates post-launch actions 09.506-08-2026
3В Кузнецке прошел городской конкурс «А ну-ка, парни!»0021-02-2025
4☝Мамы, хотите действительно отдохнуть и не думать как накормить любимых, ...5629-06-2026
5Amazon Bedrock expands IAM principal cost allocation to the bedrock-mantle endpoint08.7811-08-2026
6Новый посол США Джон Салливан прибыл в Москву0016-01-2020
7AWS IAM Identity Center supports one-click multi-Region option for new organization instances08.7907-08-2026
8Två mål för Modos Mira Hallin i segern mot SDE0021-02-2025
9AWS Console-to-Code adds 26 services and cross-region recording​016.7117-08-2026
10ЗСУ: полковника, який говорив про «реінтеграцію» з російськими військовими, понизили в посаді0016-01-2020

Классификация: Пресс-релизы. Схожих патентов: 0. Схожих новостей: 10. Тональность: 0. Информативность: 5.53. Источник: aws.amazon.com.