AWS Transfer Family now supports four new service-specific condition keys for Identity and Access Management (IAM). With this feature, administrators can create more granular IAM policies and service control policies (SCPs) to restrict configurations for Transfer Family resources, enhancing security controls and compliance management.
IAM condition keys allow you to author policies that enforce access control based on API request context. With these new condition keys, you can now author policies based on Transfer Family context to control which protocols, endpoint types, and storage domains can be configured through policy conditions. For example, you can use transfer:RequestServerEndpointType to prevent the creation of public servers, or transfer:RequestServerProtocols to ensure only SFTP servers can be created, enabling you to define additional permission guardrails for Transfer Family actions.
The new IAM condition keys are available in all AWS Regions where AWS Transfer Family is available. To learn more, visit the IAM Service Authorization Reference and Transfer Family User Guide. To learn more about how to manage permissions within your organization through SCPs, visit the AWS Organizations User Guide.
Categories: general:products/aws-transfer-for-sftp,marketing:marchitecture/migration,general:products/aws-transfer-family,general:products/aws-govcloud-us
Source: Amazon Web Services
Latest Posts
- Gateway – Gateway Authorization Proxy and hosted PAC files are now generally available

- Digital Experience Monitoring – Digital experience tests to authenticated resources and enhanced configuration

- (Updated) Upcoming change: disabling Teams meeting recording expiration notification emails [MC1245635]
![(Updated) Upcoming change: disabling Teams meeting recording expiration notification emails [MC1245635] 4 lemons 2121579 1920](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- (Updated) Open Outlook emails directly in Copilot chat [MC1223826]
![(Updated) Open Outlook emails directly in Copilot chat [MC1223826] 5 pexels artur roman 158558 534673](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)



![(Updated) Upcoming change: disabling Teams meeting recording expiration notification emails [MC1245635] 4 lemons 2121579 1920](https://mwpro.co.uk/wp-content/uploads/2025/06/lemons-2121579_1920-150x150.webp)
![(Updated) Open Outlook emails directly in Copilot chat [MC1223826] 5 pexels artur roman 158558 534673](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-artur-roman-158558-534673-150x150.webp)
![(Updated) Microsoft Teams: Trust Indicators – a new way of representing users outside your organization [MC1162276] 7 (Updated) Microsoft Teams: Trust Indicators – a new way of representing users outside your organization [MC1162276]](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-googledeepmind-18069815-96x96.webp)