Home icon

Amazon Neptune now supports tag-based access control for IAM

News



This article announces tag-based access control (TBAC) support for Amazon Neptune, allowing administrators to govern cluster access using AWS resource tags and IAM principal tags in policies.

  • Control access to Neptune data-plane operations using resource and principal tags in IAM policies and SCPs
  • IAM principals can only perform actions against clusters with matching tags, eliminating lateral access risk
  • Enforces team and environment-level isolation across projects without enumerating specific cluster ARNs
  • Supports federated identity workflows using SAML or OIDC session tags from external providers
  • Can be combined with granular permissions like neptune-db:QueryLanguage for fine-grained control
  • Available in all AWS Regions where Neptune is available with engine version 1.2.0.0 or later

TBAC enables dynamic, attribute-based access governance for Neptune clusters at scale while reducing administrative overhead.



Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

May 26
2026
Amazon VPC IPAM now supports tags on IPAM pool allocations
Mar 31
2026
Amazon Connect now supports tag-based access control for quick responses
Sep 30
2024
How to implement relationship-based access control with Amazon Verified Permissions and Amazon Neptune
Aug 1
2025
Amazon S3 Access Points now support tags for Attribute-Based Access Control

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.