| gptkbp:instanceOf | gptkb:Cloud_computing_concept 
 | 
                        
                            
                                | gptkbp:attribute | Permissions policy Trust policy
 
 | 
                        
                            
                                | gptkbp:canBe | Automation Delegation
 Security best practices
 API Gateway integration
 EC2 instance profile
 ECS task execution
 Lambda execution
 S3 access
 
 | 
                        
                            
                                | gptkbp:canBeAssumedBy | gptkb:public_service Application
 User
 
 | 
                        
                            
                                | gptkbp:canBeManagedBy | IAM service 
 | 
                        
                            
                                | gptkbp:canCreate | gptkb:Administrator 
 | 
                        
                            
                                | gptkbp:definedIn | Policies 
 | 
                        
                            
                                | gptkbp:documentedIn | AWS documentation Azure documentation
 GCP documentation
 
 | 
                        
                            
                                | gptkbp:enables | Temporary security credentials 
 | 
                        
                            
                                | gptkbp:lifeCycle | Creation Assumption
 Revocation
 Expiration
 
 | 
                        
                            
                                | gptkbp:purpose | Grant permissions to entities 
 | 
                        
                            
                                | gptkbp:relatedTo | gptkb:IAM_group gptkb:IAM_user
 IAM policy
 
 | 
                        
                            
                                | gptkbp:supports | Cross-account access Federated users
 Service-to-service authentication
 
 | 
                        
                            
                                | gptkbp:usedIn | gptkb:Google_Cloud_Platform gptkb:Amazon_Web_Services
 gptkb:Microsoft_Azure
 
 | 
                        
                            
                                | gptkbp:bfsParent | gptkb:AWS_Glue_Development_Endpoints 
 | 
                        
                            
                                | gptkbp:bfsLayer | 7 
 | 
                        
                            
                                | https://www.w3.org/2000/01/rdf-schema#label | IAM role 
 |