AWS - 为所有服务授予只读权限

AWS - Give readonly permissions for all services

AWS 中有没有办法通过中央策略为所有 服务授予只读权限?目前,我被迫为每个服务执行此操作,例如下面的 IAM -

{
    "Version": "2012-10-17",
    "Statement": {
        "Effect": "Allow",
        "Action": [
            "iam:Get*",
            "iam:List*",
            "iam:Generate*"
        ],
        "Resource": "*"
    }
}

必须为每个资源执行此操作容易出错且乏味。我们如何定义一个策略来为所有服务提供只读。

谢谢

您可以使用 AWS managed policy named ReadOnlyAccess:

the ReadOnlyAccess AWS managed policy provides read-only access to all AWS services and resources. When a service launches a new feature, AWS adds read-only permissions for new operations and resources.