Enhancing resource-level permission for creating an Amazon EBS volume from a snapshot
Storage Blog
AWS has enhanced resource-level permissions for creating Amazon EBS volumes from snapshots, providing more granular access control for IAM policies. This update allows users to specify additional authorization conditions when creating volumes from source snapshots.
- Introduces five new EC2-specific condition keys for snapshot permissions
- Requires explicit resource statements for both volumes and snapshots in IAM policies
- Enables more precise control over which snapshots can be used to create volumes
- Supports security, compliance, and resource optimization strategies
The transition timeline runs from February 17, 2025, to May 17, 2025, with most accounts being notified via email and AWS Health Dashboard. Users can use DryRun mode to validate their updated IAM policies.
The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.
Related articles
2025
2025
2025
2024
The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.