controltower:ListEnabledControls

Literal appearances in AWS managed IAM policies. Statements that use wildcards (for example s3:*) are not counted here. This is not an IAM authorization simulation.

Policies (any)

1

Allow (Action)

1

Deny (Action)

0

NotAction

0

567 policies include at least one wildcard action string (any service). Index regenerated on every deploy.

First seen

From archive history

This action

2024-05-13 in AWSSupportServiceRolePolicy

Service prefix controltower

2020-04-29 in AWSSupportServiceRolePolicy

Earliest appearance in any AWS managed policy tracked here, not an official AWS launch date. Matched case-insensitively, as IAM does.

Action reference

SAR-style (unofficial)

Service: AWS Control Tower

Access level

List

Description

Grants permission to list all enabled controls in a specified organizational unit

Dependent actions

  • controltower:ListGuardrailsForTarget

Deny (Action)

None

NotAction

None

Thanks to Ian McKay for iam-dataset (MIT), structured data derived from the AWS Service Authorization Reference. Not maintained by AWS and not guaranteed current. IAMTrail's managed policy archive is separate.

Definitions bundle regenerated on every deploy