Example SQL Queries
aws . iam .list_signing_certificates;
Description
Returns information about the signing certificates associated with the specified IAM user. If none exists, the operation returns an empty list.
Although each user is limited to a small number of signing certificates, you can still paginate the results using the MaxItems and Marker parameters.
If the UserName field is not specified, the user name is determined implicitly based on the Amazon Web Services access key ID used to sign the request for this operation. This operation works for access keys under the Amazon Web Services account. Consequently, you can use this operation to manage Amazon Web Services account root user credentials even if the Amazon Web Services account has no associated users.
Table Definition
Column Name Column Data Type
user_name Input Column The name of the user the signing certificate is associated with.
VARCHAR
_aws_profile Input Column The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role.
STRUCT( "type" VARCHAR, "name" VARCHAR, "account_id" VARCHAR, "via_profile_name" VARCHAR, "assumed_role_arn" VARCHAR, "organization" STRUCT( "account_name" VARCHAR, "id" VARCHAR, "tags" STRUCT( "key" VARCHAR, "value" VARCHAR )[], "master_account" STRUCT( "id" VARCHAR, "email" VARCHAR ), "parents" STRUCT( "type" VARCHAR, "id" VARCHAR, "name" VARCHAR, "tags" STRUCT( "key" VARCHAR, "value" VARCHAR )[] )[] ) )
Show child fields _aws_profile.account_id The AWS account id
_aws_profile.assumed_role_arn The ARN of the assumed role
_aws_profile.name The unique name of the profile.
_aws_profile.organization Information about this profile's membership in the AWS organization.
Show child fields _aws_profile.organization.account_name The name of account speciifed by the organization
_aws_profile.organization.id The organization id
_aws_profile.organization.master_account Show child fields _aws_profile.organization.master_account.email The organization master account email address
_aws_profile.organization.master_account.id The organization master account id
_aws_profile.organization.parents[] Show child fields _aws_profile.organization.parents[].id The id of the parent
_aws_profile.organization.parents[].name The name of the parent
_aws_profile.organization.parents[].tags[] Show child fields _aws_profile.organization.parents[].tags[].key
_aws_profile.organization.parents[].tags[].value
_aws_profile.organization.parents[].type The type of parent can be an organization unit or a root
_aws_profile.organization.tags[] Show child fields _aws_profile.organization.tags[].key
_aws_profile.organization.tags[].value
_aws_profile.type The type of profile, either 'credentials' or 'assumed_role'
_aws_profile.via_profile_name This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.
certificate_body The contents of the signing certificate.
VARCHAR
certificate_id The ID for the signing certificate.
VARCHAR
status The status of the signing certificate. Active means that the key is valid for API calls, while Inactive means it is not.
VARCHAR
upload_date The date when the signing certificate was uploaded.
TIMESTAMP_S