> For the complete documentation index, see [llms.txt](https://docs.forestall.io/fsprotect/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.forestall.io/fsprotect/search-and-reports/aws-iam-role.md).

# AWS IAM Role

### AWS IAM Role Fields

| Field               | Type    | Possible Operators                                             | Description                                                                                                                        |
| ------------------- | ------- | -------------------------------------------------------------- | ---------------------------------------------------------------------------------------------------------------------------------- |
| Guid                | TEXT    | LIKE, NOT\_LIKE, EQUAL, NOT\_EQUAL, IS\_EMPTY                  | A unique identifier that is a combination of the GUID of the selected Scan and the AWS IAM Role's unique ID.                       |
| FSName              | TEXT    | LIKE, NOT\_LIKE, EQUAL, NOT\_EQUAL, IS\_EMPTY                  | A special unique identifier that is a combination of the RoleName and the AWS Account ID.                                          |
| Arn                 | TEXT    | LIKE, NOT\_LIKE, EQUAL, NOT\_EQUAL, IS\_EMPTY                  | Amazon Resource Name that uniquely identifies this IAM role across all of AWS.                                                     |
| AccountId           | TEXT    | LIKE, NOT\_LIKE, EQUAL, NOT\_EQUAL, IS\_EMPTY                  | The AWS account ID that this IAM role belongs to.                                                                                  |
| Region              | TEXT    | LIKE, NOT\_LIKE, EQUAL, NOT\_EQUAL, IS\_EMPTY                  | The AWS region associated with this IAM role.                                                                                      |
| OrganizationId      | TEXT    | LIKE, NOT\_LIKE, EQUAL, NOT\_EQUAL, IS\_EMPTY                  | The AWS Organizations ID that this role's account belongs to.                                                                      |
| RoleName            | TEXT    | LIKE, NOT\_LIKE, EQUAL, NOT\_EQUAL, IS\_EMPTY                  | The friendly name that identifies the IAM role.                                                                                    |
| Description         | TEXT    | LIKE, NOT\_LIKE, EQUAL, NOT\_EQUAL, IS\_EMPTY                  | A description of the role provided by the administrator.                                                                           |
| Path                | TEXT    | LIKE, NOT\_LIKE, EQUAL, NOT\_EQUAL, IS\_EMPTY                  | The path to the role in the IAM hierarchy. Used to organize roles.                                                                 |
| PermissionsBoundary | TEXT    | LIKE, NOT\_LIKE, EQUAL, NOT\_EQUAL, IS\_EMPTY                  | The ARN of the policy used to set the permissions boundary for the role. Limits the maximum permissions the role can have.         |
| MaxSessionDuration  | NUMBER  | EQUAL, BETWEEN, SMALLER, LARGER, SMALLER\_EQUAL, LARGER\_EQUAL | The maximum session duration (in seconds) for the role. Valid values are between 3600 and 43200.                                   |
| IsPrivileged        | BOOLEAN | N/A                                                            | Indicates whether the role has been identified as privileged based on its effective permissions.                                   |
| IsServiceLinkedRole | BOOLEAN | N/A                                                            | Indicates whether this is an AWS service-linked role. These roles are pre-defined by AWS services and cannot be manually modified. |
| IsStealth           | BOOLEAN | N/A                                                            | Indicates that the role can compromise admin objects with at least one attack path without being an explicit admin role.           |
| IsInactive          | BOOLEAN | N/A                                                            | Indicates whether the role has not been used for longer than the defined inactivity threshold.                                     |
| AWSTier             | NUMBER  | EQUAL, BETWEEN, SMALLER, LARGER, SMALLER\_EQUAL, LARGER\_EQUAL | Privilege tier of the role based on its effective permissions. Higher values indicate greater privilege.                           |
| CreateDate          | DATE    | SMALLER, LARGER, BETWEEN, EQUAL                                | The date and time when the IAM role was created.                                                                                   |
| RoleLastUsed        | DATE    | SMALLER, LARGER, BETWEEN, EQUAL                                | The date and time when the role was last used to make an AWS API call.                                                             |
| ExposurePoint       | NUMBER  | EQUAL, BETWEEN, SMALLER, LARGER, SMALLER\_EQUAL, LARGER\_EQUAL | A numerical value indicating the level of exposure based on how many other entities can reach this role through attack paths.      |
| risk                | NUMBER  | EQUAL, BETWEEN, SMALLER, LARGER, SMALLER\_EQUAL, LARGER\_EQUAL | The risk score of the role calculated based on vulnerability counts and severities.                                                |


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://docs.forestall.io/fsprotect/search-and-reports/aws-iam-role.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
