Answer
"Full Admin" is a calculated attribute on an "AWS IAM User" and "AWS IAM Role". Veza will set this as true if it is allowed all actions on all resources (Allow Action * on Resource *). If there is anything limiting, such as Deny statements, Permission Boundaries, or Service Control Policy then it will not be considered "Full Admin".
Applies To
- AWS
- "Full Admin" Attribute
Comments
0 comments
Please sign in to leave a comment.