Minimum Permissions Required for Inline Policies and Basic Authentication

This section provides information on the permissions that are required to use IAM instance role for inline policies, authentication and basic authentication.

IAM permissions required for Inline Policies

If inline policies are attached to the user, then include the following permission:

"iam:GetUserPolicy"

If inline policies attached to the user group, then include the following permission:

"iam:GetGroupPolicy"

IAM instance role for authentication

Use the following permissions if you are using the IAM instance role for authentication:

"iam:ListAttachedRolePolicies",
"iam:GetPolicy",
"iam:GetPolicyVersion",
"iam:ListRolePolicies", 
"iam:ListAccountAliases",

IAM permissions required for Basic Authentication

"iam:ListGroupsForUser"
"iam:ListAttachedUserPolicies"
"iam:ListAttachedGroupPolicies"
"iam:GetPolicy",
"iam:GetPolicyVersion",
"iam:ListUserPolicies"
"iam:ListGroupPolicies"
"iam:ListAccountAliases",