origin_endpoint_policies
Creates, updates, deletes or gets an origin_endpoint_policy resource or lists origin_endpoint_policies in a region
Overview
| Name | origin_endpoint_policies |
| Type | Resource |
| Description | Represents a resource policy that allows or denies access to an origin endpoint. |
| Id | awscc.mediapackagev2.origin_endpoint_policies |
Fields
| Name | Datatype | Description |
|---|---|---|
cdn_auth_configuration | object | |
channel_group_name | string | |
channel_name | string | |
origin_endpoint_name | string | |
policy | object | |
region | string | AWS region. |
For more information, see AWS::MediaPackageV2::OriginEndpointPolicy.
Methods
| Name | Accessible by | Required Params |
|---|---|---|
create_resource | INSERT | ChannelGroupName, ChannelName, OriginEndpointName, Policy, region |
delete_resource | DELETE | Identifier, region |
update_resource | UPDATE | Identifier, PatchDocument, region |
get_resource | SELECT | Identifier, region |
SELECT examples
Gets all properties from an individual origin_endpoint_policy.
SELECT
region,
cdn_auth_configuration,
channel_group_name,
channel_name,
origin_endpoint_name,
policy
FROM awscc.mediapackagev2.origin_endpoint_policies
WHERE
region = 'us-east-1' AND
Identifier = '{{ channel_group_name }}|{{ channel_name }}|{{ origin_endpoint_name }}';
INSERT example
Use the following StackQL query and manifest file to create a new origin_endpoint_policy resource, using stack-deploy.
- Required Properties
- All Properties
- Manifest
/*+ create */
INSERT INTO awscc.mediapackagev2.origin_endpoint_policies (
ChannelGroupName,
ChannelName,
OriginEndpointName,
Policy,
region
)
SELECT
'{{ channel_group_name }}',
'{{ channel_name }}',
'{{ origin_endpoint_name }}',
'{{ policy }}',
'{{ region }}';
/*+ create */
INSERT INTO awscc.mediapackagev2.origin_endpoint_policies (
CdnAuthConfiguration,
ChannelGroupName,
ChannelName,
OriginEndpointName,
Policy,
region
)
SELECT
'{{ cdn_auth_configuration }}',
'{{ channel_group_name }}',
'{{ channel_name }}',
'{{ origin_endpoint_name }}',
'{{ policy }}',
'{{ region }}';
version: 1
name: stack name
description: stack description
providers:
- aws
globals:
- name: region
value: '{{ vars.AWS_REGION }}'
resources:
- name: origin_endpoint_policy
props:
- name: cdn_auth_configuration
value:
cdn_identifier_secret_arns:
- '{{ cdn_identifier_secret_arns[0] }}'
secrets_role_arn: '{{ secrets_role_arn }}'
- name: channel_group_name
value: '{{ channel_group_name }}'
- name: channel_name
value: '{{ channel_name }}'
- name: origin_endpoint_name
value: '{{ origin_endpoint_name }}'
- name: policy
value: {}
UPDATE example
Use the following StackQL query and manifest file to update a origin_endpoint_policy resource, using stack-deploy.
/*+ update */
UPDATE awscc.mediapackagev2.origin_endpoint_policies
SET PatchDocument = string('{{ {
"CdnAuthConfiguration": cdn_auth_configuration,
"Policy": policy
} | generate_patch_document }}')
WHERE
region = '{{ region }}' AND
Identifier = '{{ channel_group_name }}|{{ channel_name }}|{{ origin_endpoint_name }}';
DELETE example
/*+ delete */
DELETE FROM awscc.mediapackagev2.origin_endpoint_policies
WHERE
Identifier = '{{ channel_group_name }}|{{ channel_name }}|{{ origin_endpoint_name }}' AND
region = 'us-east-1';
Permissions
To operate on the origin_endpoint_policies resource, the following permissions are required:
- Create
- Read
- Update
- Delete
mediapackagev2:GetOriginEndpointPolicy,
mediapackagev2:PutOriginEndpointPolicy,
iam:PassRole
mediapackagev2:GetOriginEndpointPolicy
mediapackagev2:GetOriginEndpointPolicy,
mediapackagev2:PutOriginEndpointPolicy,
iam:PassRole
mediapackagev2:GetOriginEndpointPolicy,
mediapackagev2:DeleteOriginEndpointPolicy