AWS Managed Policy to Restrict IAM User to Access AWS Resource from Specific IP Address.


AWS Managed Policy

Within this blog post, we will cover 
How we can use IAM Managed Policy used to create an IAM User Boundary which will limit a user for the below operations.

  • AWS S3 Limited Access [Get, Put, List]
  • S3 Access with only single IP Address.
Syntax Template

AWSTemplateFormatVersion: 2010-09-09
DescriptionCFN to create ManagedPolicy 

      DescriptionA ManagedPolicy meant to restrict user based upon ingress IP.
      - my_s3_user
            - EffectAllow
              - s3:ListBucket
              - s3:GetBucketLocation
            - EffectAllow
              - s3:PutObject
              - s3:PutObjectAcl

