Creates a policy store
Source:R/verifiedpermissions_operations.R
verifiedpermissions_create_policy_store.RdCreates a policy store. A policy store is a container for policy resources.
See https://www.paws-r-sdk.com/docs/verifiedpermissions_create_policy_store/ for full documentation.
Usage
verifiedpermissions_create_policy_store(
clientToken = NULL,
validationSettings,
description = NULL,
deletionProtection = NULL,
encryptionSettings = NULL,
tags = NULL
)Arguments
- clientToken
Specifies a unique, case-sensitive ID that you provide to ensure the idempotency of the request. This lets you safely retry the request without accidentally performing the same operation a second time. Passing the same value to a later call to an operation requires that you also pass the same value for all other parameters. We recommend that you use a UUID type of value..
If you don't provide this value, then Amazon Web Services generates a random one for you.
If you retry the operation with the same
ClientToken, but with different parameters, the retry fails with anConflictExceptionerror.Verified Permissions recognizes a
ClientTokenfor eight hours. After eight hours, the next request with the same parameters performs the operation again regardless of the value ofClientToken.- validationSettings
[required] Specifies the validation setting for this policy store.
Currently, the only valid and required value is
Mode.We recommend that you turn on
STRICTmode only after you define a schema. If a schema doesn't exist, thenSTRICTmode causes any policy to fail validation, and Verified Permissions rejects the policy. You can turn off validation by using theupdate_policy_store. Then, when you have a schema defined, useupdate_policy_storeagain to turn validation back on.- description
Descriptive text that you can provide to help with identification of the current policy store.
- deletionProtection
Specifies whether the policy store can be deleted. If enabled, the policy store can't be deleted.
The default state is
DISABLED.- encryptionSettings
Specifies the encryption settings used to encrypt the policy store and their child resources. Allows for the ability to use a customer owned KMS key for encryption of data.
This is an optional field to be used when providing a customer-managed KMS key for encryption.
The list of key-value pairs to associate with the policy store.