Skip to content

aws.cloudfront.get_cloud_front_origin_access_identity

Example SQL Queries

SELECT * FROM
aws.cloudfront.get_cloud_front_origin_access_identity
WHERE
"id" = 'VALUE';

Description

Get the information about an origin access identity.

Table Definition

Column NameColumn Data Type
id Required Input Column

The identity's ID.

VARCHAR
_aws_profile Input Column

The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role.

STRUCT(
"type" VARCHAR,
"name" VARCHAR,
"account_id" VARCHAR,
"via_profile_name" VARCHAR,
"assumed_role_arn" VARCHAR,
"organization" STRUCT(
"account_name" VARCHAR,
"id" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[],
"master_account" STRUCT(
"id" VARCHAR,
"email" VARCHAR
),
"parents" STRUCT(
"type" VARCHAR,
"id" VARCHAR,
"name" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[]
)[]
)
)
Show child fields
_aws_profile.account_id

The AWS account id

_aws_profile.assumed_role_arn

The ARN of the assumed role

_aws_profile.name

The unique name of the profile.

_aws_profile.organization

Information about this profile's membership in the AWS organization.

Show child fields
_aws_profile.organization.account_name

The name of account speciifed by the organization

_aws_profile.organization.id

The organization id

_aws_profile.organization.master_account
Show child fields
_aws_profile.organization.master_account.email

The organization master account email address

_aws_profile.organization.master_account.id

The organization master account id

_aws_profile.organization.parents[]
Show child fields
_aws_profile.organization.parents[].id

The id of the parent

_aws_profile.organization.parents[].name

The name of the parent

_aws_profile.organization.parents[].tags[]
Show child fields
_aws_profile.organization.parents[].tags[].key
_aws_profile.organization.parents[].tags[].value
_aws_profile.organization.parents[].type

The type of parent can be an organization unit or a root

_aws_profile.organization.tags[]
Show child fields
_aws_profile.organization.tags[].key
_aws_profile.organization.tags[].value
_aws_profile.type

The type of profile, either 'credentials' or 'assumed_role'

_aws_profile.via_profile_name

This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.

cloud_front_origin_access_identity

The origin access identity's information.

STRUCT(
"id" VARCHAR,
"s3_canonical_user_id" VARCHAR,
"cloud_front_origin_access_identity_config" STRUCT(
"caller_reference" VARCHAR,
"comment" VARCHAR
)
)
Show child fields
cloud_front_origin_access_identity.cloud_front_origin_access_identity_config

The current configuration information for the identity.

Show child fields
cloud_front_origin_access_identity.cloud_front_origin_access_identity_config.caller_reference

A unique value (for example, a date-time stamp) that ensures that the request can't be replayed.

If the value of CallerReference is new (regardless of the content of the CloudFrontOriginAccessIdentityConfig object), a new origin access identity is created.

If the CallerReference is a value already sent in a previous identity request, and the content of the CloudFrontOriginAccessIdentityConfig is identical to the original request (ignoring white space), the response includes the same information returned to the original request.

If the CallerReference is a value you already sent in a previous request to create an identity, but the content of the CloudFrontOriginAccessIdentityConfig is different from the original request, CloudFront returns a CloudFrontOriginAccessIdentityAlreadyExists error.

cloud_front_origin_access_identity.cloud_front_origin_access_identity_config.comment

A comment to describe the origin access identity. The comment cannot be longer than 128 characters.

cloud_front_origin_access_identity.id

The ID for the origin access identity, for example, E74FTE3AJFJ256A.

cloud_front_origin_access_identity.s3_canonical_user_id

The Amazon S3 canonical user ID for the origin access identity, used when giving the origin access identity read permission to an object in Amazon S3.

e_tag

The current version of the origin access identity's information. For example: E2QWRUHAPOMQZL.

VARCHAR