aws-rolesanywhere-session-credentials-output

Roles Anywhere CreateSession returns temporary role credentials to a certificate-authenticated caller and is not authorized by an IAM action on that caller.

awscritical service: aws:rolesanywhere emits ExposesCredential

Where it sits

locationCreateSession.CredentialSet[].Credentials.SecretAccessKey / SessionToken
location kindoutput_value
data kindsaccess_key secret_key session_token credential
emits edgeExposesCredential
serviceIAM Roles Anywhere (aws:rolesanywhere)

Collection recipe

access modecreation_response_only
operationCreateSession
response pathCredentialSet[].Credentials.{AccessKeyId,SecretAccessKey,SessionToken}
encodingjson
params{"ProfileArn": "\u003cprofile-arn\u003e", "RoleArn": "\u003crole-arn\u003e", "TrustAnchorArn": "\u003ctrust-anchor-arn\u003e"}

References

move · open · esc close