rds:DescribeDBInstances
Literal appearances in AWS managed IAM policies. Statements that use wildcards (for example s3:*) are not counted here. This is not an IAM authorization simulation.
Policies (any)
58
Allow (Action)
58
Deny (Action)
0
NotAction
1
Index generated 4/7/2026, 3:29:24 AM. 559 policies include at least one wildcard action string (any service).
Action reference
SAR-style (unofficial)Service: Amazon RDS, Neptune & DocumentDB
Access level
ListDescription
Grants permission to return information about provisioned RDS instances
Resource types
- db
Allow (Action)
- AWSApplicationAutoscalingNeptuneClusterPolicy
- AWSApplicationAutoscalingRDSClusterPolicy
- AWSAuditManagerServiceRolePolicy
- AWSBackupAdminPolicy
- AWSBackupFullAccess
- AWSBackupOperatorAccess
- AWSBackupOperatorPolicy
- AWSBackupServiceLinkedRolePolicyForBackup
- AWSBackupServiceRolePolicyForBackup
- AWSBackupServiceRolePolicyForRestores
- AWSBudgetsActionsRolePolicyForResourceAdministrationWithSSM
- AWSBudgetsActionsWithAWSResourceControlAccess
- AWSBudgetsActions_RolePolicyForResourceAdministrationWithSSM
- AWSConfigRole
- AWSConfigServiceRolePolicy
- AWSDataPipelineRole
- AWSDataPipeline_FullAccess
- AWSDataPipeline_PowerUser
- AWSElasticBeanstalkManagedUpdatesCustomerRolePolicy
- AWSElasticBeanstalkManagedUpdatesServiceRolePolicy
- AWSElasticBeanstalkReadOnly
- AWSElasticBeanstalkService
- AWSFaultInjectionSimulatorRDSAccess
- AWSGlueConsoleFullAccess
- AWSGlueConsoleSageMakerNotebookFullAccess
- AWSResilienceHubAsssessmentExecutionPolicy
- AWSResourceExplorerServiceRolePolicy
- AWSResourceGroupsReadOnlyAccess
- AWSServiceRolePolicyForBackupRestoreTesting
- AWSTrustedAdvisorServiceRolePolicy
- AWS_ConfigRole
- AWS_Config_Role
- AmazonDataZoneSageMakerEnvironmentRolePermissionsBoundary
- AmazonDevOpsGuruConsoleFullAccess
- AmazonDevOpsGuruFullAccess
- AmazonDevOpsGuruReadOnlyAccess
- AmazonDevOpsGuruServiceRolePolicy
- AmazonDocDBConsoleFullAccess
- AmazonDocDBFullAccess
- AmazonDocDBReadOnlyAccess
- AmazonFISServiceRolePolicy
- AmazonRDSPerformanceInsightsFullAccess
- AmazonRDSPerformanceInsightsReadOnly
- AmazonSageMakerCanvasDataPrepFullAccess
- AmazonSageMakerCanvasFullAccess
- AmplifyBackendDeployFullAccess
- CloudWatchApplicationInsightsFullAccess
- CloudWatchAutomaticDashboardsAccess
- CloudwatchApplicationInsightsServiceLinkedRolePolicy
- ComputeOptimizerReadOnlyAccess
- DBModDiscoveryAndAssessment
- NeptuneConsoleFullAccess
- NeptuneFullAccess
- NeptuneReadOnlyAccess
- Route53RecoveryReadinessServiceRolePolicy
- SecretsManagerReadWrite
- VPCLatticeFullAccess
- VPCLatticeReadOnlyAccess
Deny (Action)
None
Thanks to Ian McKay for iam-dataset (MIT), structured data derived from the AWS Service Authorization Reference. Not maintained by AWS and not guaranteed current. IAMTrail's managed policy archive is separate.
Definitions bundle generated 4/7/2026, 3:29:24 AM