Skip to content

aws.ec2.describe_verified_access_trust_providers

Example SQL Queries

SELECT * FROM
aws.ec2.describe_verified_access_trust_providers;

Description

Describes the specified Amazon Web Services Verified Access trust providers.

Table Definition

Column NameColumn Data Type
dry_run Input Column

Checks whether you have the required permissions for the action, without actually making the request, and provides an error response. If you have the required permissions, the error response is DryRunOperation. Otherwise, it is UnauthorizedOperation.

BOOLEAN
filters Input Column

One or more filters. Filter names and values are case-sensitive.

STRUCT(
"name" VARCHAR,
"values" VARCHAR[]
)[]
Show child fields
filters[]
Show child fields
filters[].name

The name of the filter. Filter names are case-sensitive.

filters[].values[]
verified_access_trust_provider_ids Input Column

The IDs of the Verified Access trust providers.

VARCHAR[]
Show child fields
verified_access_trust_provider_ids[]
_aws_profile Input Column

The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role.

STRUCT(
"type" VARCHAR,
"name" VARCHAR,
"account_id" VARCHAR,
"via_profile_name" VARCHAR,
"assumed_role_arn" VARCHAR,
"organization" STRUCT(
"account_name" VARCHAR,
"id" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[],
"master_account" STRUCT(
"id" VARCHAR,
"email" VARCHAR
),
"parents" STRUCT(
"type" VARCHAR,
"id" VARCHAR,
"name" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[]
)[]
)
)
Show child fields
_aws_profile.account_id

The AWS account id

_aws_profile.assumed_role_arn

The ARN of the assumed role

_aws_profile.name

The unique name of the profile.

_aws_profile.organization

Information about this profile's membership in the AWS organization.

Show child fields
_aws_profile.organization.account_name

The name of account speciifed by the organization

_aws_profile.organization.id

The organization id

_aws_profile.organization.master_account
Show child fields
_aws_profile.organization.master_account.email

The organization master account email address

_aws_profile.organization.master_account.id

The organization master account id

_aws_profile.organization.parents[]
Show child fields
_aws_profile.organization.parents[].id

The id of the parent

_aws_profile.organization.parents[].name

The name of the parent

_aws_profile.organization.parents[].tags[]
Show child fields
_aws_profile.organization.parents[].tags[].key
_aws_profile.organization.parents[].tags[].value
_aws_profile.organization.parents[].type

The type of parent can be an organization unit or a root

_aws_profile.organization.tags[]
Show child fields
_aws_profile.organization.tags[].key
_aws_profile.organization.tags[].value
_aws_profile.type

The type of profile, either 'credentials' or 'assumed_role'

_aws_profile.via_profile_name

This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.

_aws_region Input Column

The AWS region to use.

VARCHAR
creation_time

The creation time.

VARCHAR
description

A description for the Amazon Web Services Verified Access trust provider.

VARCHAR
device_options

The options for device-identity trust provider.

STRUCT(
"tenant_id" VARCHAR,
"public_signing_key_url" VARCHAR
)
Show child fields
device_options.public_signing_key_url

The URL Amazon Web Services Verified Access will use to verify the authenticity of the device tokens.

device_options.tenant_id

The ID of the tenant application with the device-identity provider.

device_trust_provider_type

The type of device-based trust provider.

VARCHAR
last_updated_time

The last updated time.

VARCHAR
oidc_options

The options for an OpenID Connect-compatible user-identity trust provider.

STRUCT(
"issuer" VARCHAR,
"authorization_endpoint" VARCHAR,
"token_endpoint" VARCHAR,
"user_info_endpoint" VARCHAR,
"client_id" VARCHAR,
"client_secret" VARCHAR,
"scope" VARCHAR
)
Show child fields
oidc_options.authorization_endpoint

The OIDC authorization endpoint.

oidc_options.client_id

The client identifier.

oidc_options.client_secret

The client secret.

oidc_options.issuer

The OIDC issuer.

oidc_options.scope

The OpenID Connect (OIDC) scope specified.

oidc_options.token_endpoint

The OIDC token endpoint.

oidc_options.user_info_endpoint

The OIDC user info endpoint.

policy_reference_name

The identifier to be used when working with policy rules.

VARCHAR
sse_specification

The options in use for server side encryption.

STRUCT(
"customer_managed_key_enabled" BOOLEAN,
"kms_key_arn" VARCHAR
)
Show child fields
sse_specification.customer_managed_key_enabled

Indicates whether customer managed KMS keys are in use for server side encryption.

Valid values: True | False

sse_specification.kms_key_arn

The ARN of the KMS key.

tags

The tags.

STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[]
Show child fields
tags[]
Show child fields
tags[].key

The key of the tag.

Constraints: Tag keys are case-sensitive and accept a maximum of 127 Unicode characters. May not begin with aws:.

tags[].value

The value of the tag.

Constraints: Tag values are case-sensitive and accept a maximum of 256 Unicode characters.

trust_provider_type

The type of Verified Access trust provider.

VARCHAR
user_trust_provider_type

The type of user-based trust provider.

VARCHAR
verified_access_trust_provider_id

The ID of the Amazon Web Services Verified Access trust provider.

VARCHAR