openapi: 3.1.0
info:
title: Amazon Web Services accessanalyzer 2012 09 25 Repository API
description: <p>Identity and Access Management Access Analyzer helps you to set, verify, and refine your IAM policies by providing a suite of capabilities. Its features include findings for external and unused access, basic and custom policy checks for validating policies, and policy generation to generate fine-grained policies. To start using IAM Access Analyzer to identify external or unused access, you first need to create an analyzer.</p> <p> <b>External access analyzers</b> help identify potential risks of accessing resources by enabling you to identify any resource policies that grant access to an external principal. It does this by using logic-based reasoning to analyze resource-based policies in your Amazon Web Services environment. An external principal can be another Amazon Web Services account, a root user, an IAM user or role, a federated user, an Amazon Web Services service, or an anonymous user. You can also use IAM Access Analyzer to preview public and cross-account access to your resources before deploying permissions changes.</p> <p> <b>Unused access analyzers</b> help identify potential identity access risks by enabling you to identify unused IAM roles, unused access keys, unused console passwords, and IAM principals with unused service and action-level permissions.</p> <p>Beyond findings, IAM Access Analyzer provides basic and custom policy checks to validate IAM policies before deploying permissions changes. You can use policy generation to refine permissions by attaching a policy generated using access activity logged in CloudTrail logs. </p> <p>This guide describes the IAM Access Analyzer operations that you can call programmatically. For general information about IAM Access Analyzer, see <a href="https://docs.aws.amazon.com/IAM/latest/UserGuide/what-is-access-analyzer.html">Identity and Access Management Access Analyzer</a> in the <b>IAM User Guide</b>.</p>
tags:
- name: Repository
paths:
/v1/repository/external-connection:
DELETE:
summary: Amazon Web Services Disassociateexternalconnection
description: ' Removes an existing external connection from a repository. '
operationId: amazonWebServicesDisassociateExternalConnection
tags:
- Repository
/v1/repository:
PUT:
summary: Amazon Web Services Updaterepository
description: ' Update the properties of a repository. '
operationId: amazonWebServicesUpdateRepository
tags:
- Repository
/v1/repository/permissions/policies:
DELETE:
summary: Amazon Web Services Deleterepositorypermissionspolicy
description: ' Deletes the resource policy that is set on a repository. After a resource policy is deleted, the permissions allowed and denied by the deleted policy are removed. The effect of deleting a resource policy might not be immediate. Use DeleteRepositoryPermissionsPolicy with caution. After a policy is deleted, Amazon Web Services users, roles, and accounts lose permissions to perform the repository actions granted by the deleted policy. '
operationId: amazonWebServicesDeleteRepositoryPermissionsPolicy
tags:
- Repository
/v1/repository/endpoint:
GET:
summary: Amazon Web Services Getrepositoryendpoint
description: ' Returns the endpoint of a repository for a specific package format. A repository has one endpoint for each package format: maven npm nuget pypi '
operationId: amazonWebServicesGetRepositoryEndpoint
tags:
- Repository
/v1/repository/permissions/policy:
PUT:
summary: Amazon Web Services Putrepositorypermissionspolicy
description: ' Sets the resource policy on a repository that specifies permissions to access it. When you call PutRepositoryPermissionsPolicy, the resource policy on the repository is ignored when evaluting permissions. This ensures that the owner of a repository cannot lock themselves out of the repository, which would prevent them from being able to update the resource policy. '
operationId: amazonWebServicesPutRepositoryPermissionsPolicy
tags:
- Repository