iam Groups
A list of IAM group names. IAM users generated against this vault role will be added to these IAM Groups. For a credential type of assumed_role
or federation_token
, the policies sent to the corresponding AWS call (sts:AssumeRole or sts:GetFederation) will be the policies from each group in iam_groups
combined with the policy_document
and policy_arns
parameters.