AWS ECR Resource Policy: Block Outside Specific Public IP Range

Mar 07, 2022

0

Share this article

{{ }} Substitute variables

Adjust the variable values according to your preference.

Policy Code

1{
2  "Version": "2012-10-17",
3  "Id": "PermitOnlyIPRange",
4  "Statement": [
5    {
6      "Sid": "Deny not in this range",
7      "Effect": "Deny",
8      "Principal": "*",
9      "Action": "ecr:*",
10      "Condition": {
11        "NotIpAddress": {
12          "aws:SourceIp": "54.240.143.0/24"
13        }
14      }
15    }
16  ]
17}
    img

    Related Policies

    POLICY

    AWS ECR: Permit Cross Account Image Upload

    Grant n AWS accounts, any principal, to connect to ECR resource and upload image...

    Mar 07, 2022

    0
    POLICY

    AWS ECR, Permit Cross Account Image Download

    Grant n other accounts access to this ECR, account-wide. Use more specific princ...

    Feb 16, 2022

    0
    POLICY

    Principal Policy - Permit Access to Cross-Account Secret and...

    Policy for principal (User, Service) to access cross-account secret and KMS CMK...

    Feb 16, 2022

    0
    img

    Join the beta waitlist

    Enter your email to get notified when our product becomes available to try.

    Sign Up for the community

    Create your member profile to get involved with our content, programs, and events.