Skip to content

aws.lightsail.get_bucket_access_keys

Example SQL Queries

SELECT * FROM
aws.lightsail.get_bucket_access_keys
WHERE
"bucket_name" = 'VALUE';

Description

Returns the existing access key IDs for the specified Amazon Lightsail bucket.

This action does not return the secret access key value of an access key. You can get a secret access key only when you create it from the response of the CreateBucketAccessKey action. If you lose the secret access key, you must create a new access key.

Table Definition

Column NameColumn Data Type
bucket_name Required Input Column

The name of the bucket for which to return access keys.

VARCHAR
_aws_profile Input Column

The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role.

STRUCT(
"type" VARCHAR,
"name" VARCHAR,
"account_id" VARCHAR,
"via_profile_name" VARCHAR,
"assumed_role_arn" VARCHAR,
"organization" STRUCT(
"account_name" VARCHAR,
"id" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[],
"master_account" STRUCT(
"id" VARCHAR,
"email" VARCHAR
),
"parents" STRUCT(
"type" VARCHAR,
"id" VARCHAR,
"name" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[]
)[]
)
)
Show child fields
_aws_profile.account_id

The AWS account id

_aws_profile.assumed_role_arn

The ARN of the assumed role

_aws_profile.name

The unique name of the profile.

_aws_profile.organization

Information about this profile's membership in the AWS organization.

Show child fields
_aws_profile.organization.account_name

The name of account speciifed by the organization

_aws_profile.organization.id

The organization id

_aws_profile.organization.master_account
Show child fields
_aws_profile.organization.master_account.email

The organization master account email address

_aws_profile.organization.master_account.id

The organization master account id

_aws_profile.organization.parents[]
Show child fields
_aws_profile.organization.parents[].id

The id of the parent

_aws_profile.organization.parents[].name

The name of the parent

_aws_profile.organization.parents[].tags[]
Show child fields
_aws_profile.organization.parents[].tags[].key
_aws_profile.organization.parents[].tags[].value
_aws_profile.organization.parents[].type

The type of parent can be an organization unit or a root

_aws_profile.organization.tags[]
Show child fields
_aws_profile.organization.tags[].key
_aws_profile.organization.tags[].value
_aws_profile.type

The type of profile, either 'credentials' or 'assumed_role'

_aws_profile.via_profile_name

This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.

_aws_region Input Column

The AWS region to use.

VARCHAR
access_keys

An object that describes the access keys for the specified bucket.

STRUCT(
"access_key_id" VARCHAR,
"secret_access_key" VARCHAR,
"status" VARCHAR,
"created_at" TIMESTAMP_S,
"last_used" STRUCT(
"last_used_date" TIMESTAMP_S,
"region" VARCHAR,
"service_name" VARCHAR
)
)[]
Show child fields
access_keys[]
Show child fields
access_keys[].access_key_id

The ID of the access key.

access_keys[].created_at

The timestamp when the access key was created.

access_keys[].last_used

An object that describes the last time the access key was used.

This object does not include data in the response of a CreateBucketAccessKey action. If the access key has not been used, the region and serviceName values are N/A, and the lastUsedDate value is null.

Show child fields
access_keys[].last_used.last_used_date

The date and time when the access key was most recently used.

This value is null if the access key has not been used.

access_keys[].last_used.region

The Amazon Web Services Region where this access key was most recently used.

This value is N/A if the access key has not been used.

access_keys[].last_used.service_name

The name of the Amazon Web Services service with which this access key was most recently used.

This value is N/A if the access key has not been used.

access_keys[].secret_access_key

The secret access key used to sign requests.

You should store the secret access key in a safe location. We recommend that you delete the access key if the secret access key is compromised.

access_keys[].status

The status of the access key.

A status of Active means that the key is valid, while Inactive means it is not.