Service Control Policies
Resource Control Policies
Declarative Policies
Tag, Backup & AI Opt-Out Policies
Config Rules
CloudWatch Alarms and Event Rules
CloudFormation Guard Rules
Backups & DR
Service Control Policies
Resource Control Policies
Declarative Policies
Tag, Backup & AI Opt-Out Policies
Config Rules
CloudWatch Alarms and Event Rules
CloudFormation Guard Rules
Backups & DR
VPC Security Controls
EC2 Security Controls
IAM Security Controls
S3 Security Controls
RDS Security Controls
Amazon DynamoDB & DAX
EMR Security
Lambda Security
CloudFormation Security
CodeX Security Controls
CloudFront Security
Amazon GuardDuty
Amazon Inspector
AWS Security Hub
Amazon Macie
AWS WAF & Shield
AWS Systems Manager
AWS KMS
AWS SSO
Amazon ECS
Amazon EKS
Amazon API Gateway
AWS AppConfig
Amazon AppFlow
AWS App Mesh
AWS AppSync
Application Auto Scaling
Amazon Athena
AWS Batch
AWS SNS
AWS SQS
AWS Service Discovery
AWS Step Functions
AWS CloudTrail
AWS Config
Amazon EventBridge
AWS CloudWatch
AWS Glue
AWS Data Pipeline & Data Sync
Amazon Detective
AWS DevOps Guru
Amazon DocumentDB
Amazon ElastiCache
AWS Elastic Beanstalk
Amazon FSx
Amazon MQ
Amazon Prometheus
Amazon Cassandra
Amazon FinSpace
AWS Fault Injection Simulator
Amazon GameLift
AWS Global Accelerator
Amazon Grafana
AWS IoT GreenGrass
AWS IoT Services
AWS Ground Station
Amazon IVS (Interactive Live Streams)
Amazon Kinesis
AWS LakeFormation
Amazon Lookout
Amazon Managed Blockchain
AWS Media Services
AWS Managed Apache Airflow
AWS OpsWorks
AWS Organizations
Amazon Personalize
Amazon QLDB
Amazon Redshift
Amazon Rekognition
AWS Resource Explorer
AWS Resource Groups
Amazon Lex & Alexa
AWS RoboMaker
Amazon SageMaker
AWS Service Catalog
Amazon SES
AWS Support App
AWS Transfer
AWS X-Ray
AWS Amplify
AWS Appstream
AWS Audit Manager
Amazon Bedrock
AWS Cloud9
AWS CloudHSM
Amazon Neptune
Amazon QuicksightThis template sets up a CA hierarchy and permission. It creates a root CA using the AWS::ACMPCA::CertificateAuthority resource, issues a CA certificate using the AWS::ACMPCA::Certificate resource, activates the root CA using the AWS::ACMPCA::CertificateAuthorityActivation resource, and sets permissions using the AWS::ACMPCA::Permission resource. It also creates a subordinate CA, issues a CA certificate for the subordinate CA, activates the subordinate CA, and sets permissions for the subordinate CA.
SHA256WITHRSA SHA256WITHECDSA SHA256WITHRSA SHA384WITHECDSA SHA384WITHRSA SHA512WITHECDSA SHA512WITHRSA |
Actions | |
RSA_2048 EC_prime256v1 EC_secp384r1 RSA_2048 RSA_4096 | |||||||||||||||
FIPS_140_2_LEVEL_2_OR_HIGHER FIPS_140_2_LEVEL_3_OR_HIGHER | |||||||||||||||
SHA256WITHRSA SHA256WITHECDSA SHA256WITHRSA SHA384WITHECDSA SHA384WITHRSA SHA512WITHECDSA SHA512WITHRSA | |||||||||||||||
Tags | |||||||||||||||
SUBORDINATE ROOT SUBORDINATE | |||||||||||||||
GENERAL_PURPOSE SHORT_LIVED_CERTIFICATE | |||||||||||||||
SHA256WITHRSA SHA256WITHECDSA SHA256WITHRSA SHA384WITHECDSA SHA384WITHRSA SHA512WITHECDSA SHA512WITHRSA |
Actions | |
RSA_2048 EC_prime256v1 EC_secp384r1 RSA_2048 RSA_4096 | |||||||||||||||||||
FIPS_140_2_LEVEL_2_OR_HIGHER FIPS_140_2_LEVEL_3_OR_HIGHER | |||||||||||||||||||
SHA256WITHRSA SHA256WITHECDSA SHA256WITHRSA SHA384WITHECDSA SHA384WITHRSA SHA512WITHECDSA SHA512WITHRSA | |||||||||||||||||||
Tags | |||||||||||||||||||
SUBORDINATE ROOT SUBORDINATE | |||||||||||||||||||
GENERAL_PURPOSE SHORT_LIVED_CERTIFICATE | |||||||||||||||||||
SHA256WITHRSA SHA256WITHECDSA SHA256WITHRSA SHA384WITHECDSA SHA384WITHRSA SHA512WITHECDSA SHA512WITHRSA |
Actions | |
SHA256WITHRSA SHA256WITHECDSA SHA256WITHRSA SHA384WITHECDSA SHA384WITHRSA SHA512WITHECDSA SHA512WITHRSA |
© 2026 asecurecloud. All rights reserved.
