The following sub-lessons discuss the key attributes of a policy.


This defines the AWS resource that we want the policy to apply to. For example, if we are granting access to an EC2 instance, the EC2 instance will be our resource. Every resource in AWS is identified by an Amazon Resource Name (ARN) i.e. . We need to provide the ARN of the resource while creating a policy.

