AWS Identity and Access Management (IAM) now offers three new global condition keys that will make it easier for you to establish a network perimeter. The new condition keys – aws:VpceAccount, aws:VpceOrgPaths, and aws:VpceOrgID – help you ensure that requests to your AWS resources or by your identities are made through your VPC endpoints.
The condition keys provide you with varied levels of granularity, enabling you to implement your network perimeter controls at an account, organization path, and entire organization level. The controls automatically scale with your VPC usage, eliminating the need to enumerate VPC endpoints or update policies as you add or remove them. You can use these condition keys with both new and existing service control policies (SCPs), resource control policies (RCPs), resource-based policies, and identity-based policies.
The condition keys are supported for a select set of AWS services and are available in all commercial AWS Regions where those services support AWS PrivateLink.
To learn more about these new condition keys and supported services, please visit the AWS IAM documentation and AWS blog.
Categories: general:products/aws-iam,marketing:marchitecture/security-identity-and-compliance
Source: Amazon Web Services
Latest Posts
- Dynamics 365 Project Operations – Enable project resources on general journal entries for modern projects [MC1390347]
![Dynamics 365 Project Operations - Enable project resources on general journal entries for modern projects [MC1390347] 2 pexels sarah trummer 155385 955787](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- Dynamics 365 Project Operations – Post project invoice proposals using multithreaded batch tasks [MC1390348]
![Dynamics 365 Project Operations - Post project invoice proposals using multithreaded batch tasks [MC1390348] 3 pexels olly 3755755](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- Amazon Lightsail is now available in three additional AWS Regions

- Durable Objects, Workers – Filter Durable Objects metrics by object ID or name


![Dynamics 365 Project Operations - Enable project resources on general journal entries for modern projects [MC1390347] 2 pexels sarah trummer 155385 955787](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-sarah-trummer-155385-955787-150x150.webp)
![Dynamics 365 Project Operations - Post project invoice proposals using multithreaded batch tasks [MC1390348] 3 pexels olly 3755755](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-olly-3755755-150x150.webp)


