/**
 * All IAM policy actions for Amazon EC2 (EC2)
 *
 * Extracted by `aws-iam-policy` from
 * https://docs.aws.amazon.com/service-authorization/latest/reference/list_amazonec2.html
 *
 * 2025-02-24T21:47:42.045Z
 */
export declare enum AwsEc2Actions {
    /**
     * Grants permission to accept an Elastic IP address transfer
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AcceptAddressTransfer.html
     */
    AcceptAddressTransfer = "ec2:AcceptAddressTransfer",
    /**
     * Grants permission to accept assign billing of the available capacity of a share
     * d Capacity Reservation to the calling account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AcceptCapacityReservationBillingOwnership.html
     */
    AcceptCapacityReservationBillingOwnership = "ec2:AcceptCapacityReservationBillingOwnership",
    /**
     * Grants permission to accept a Convertible Reserved Instance exchange quote
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AcceptReservedInstancesExchangeQuote.html
     */
    AcceptReservedInstancesExchangeQuote = "ec2:AcceptReservedInstancesExchangeQuote",
    /**
     * Grants permission to accept a request to associate subnets with a transit gatew
     * ay multicast domain
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AcceptTransitGatewayMulticastDomainAssociations.html
     */
    AcceptTransitGatewayMulticastDomainAssociations = "ec2:AcceptTransitGatewayMulticastDomainAssociations",
    /**
     * Grants permission to accept a transit gateway peering attachment request
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AcceptTransitGatewayPeeringAttachment.html
     */
    AcceptTransitGatewayPeeringAttachment = "ec2:AcceptTransitGatewayPeeringAttachment",
    /**
     * Grants permission to accept a request to attach a VPC to a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AcceptTransitGatewayVpcAttachment.html
     */
    AcceptTransitGatewayVpcAttachment = "ec2:AcceptTransitGatewayVpcAttachment",
    /**
     * Grants permission to accept one or more interface VPC endpoint connections to y
     * our VPC endpoint service
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AcceptVpcEndpointConnections.html
     */
    AcceptVpcEndpointConnections = "ec2:AcceptVpcEndpointConnections",
    /**
     * Grants permission to accept a VPC peering connection request
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AcceptVpcPeeringConnection.html
     */
    AcceptVpcPeeringConnection = "ec2:AcceptVpcPeeringConnection",
    /**
     * Grants permission to advertise an IP address range that is provisioned for use
     * in AWS through bring your own IP addresses (BYOIP)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AdvertiseByoipCidr.html
     */
    AdvertiseByoipCidr = "ec2:AdvertiseByoipCidr",
    /**
     * Grants permission to allocate an Elastic IP address (EIP) to your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AllocateAddress.html
     */
    AllocateAddress = "ec2:AllocateAddress",
    /**
     * Grants permission to allocate a Dedicated Host to your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AllocateHosts.html
     */
    AllocateHosts = "ec2:AllocateHosts",
    /**
     * Grants permission to allocate a CIDR from an Amazon VPC IP Address Manager (IPA
     * M) pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AllocateIpamPoolCidr.html
     */
    AllocateIpamPoolCidr = "ec2:AllocateIpamPoolCidr",
    /**
     * Grants permission to apply a security group to the association between a Client
     * VPN endpoint and a target network
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ApplySecurityGroupsToClientVpnTargetNetwork.html
     */
    ApplySecurityGroupsToClientVpnTargetNetwork = "ec2:ApplySecurityGroupsToClientVpnTargetNetwork",
    /**
     * Grants permission to assign one or more IPv6 addresses to a network interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssignIpv6Addresses.html
     */
    AssignIpv6Addresses = "ec2:AssignIpv6Addresses",
    /**
     * Grants permission to assign one or more secondary private IP addresses to a net
     * work interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssignPrivateIpAddresses.html
     */
    AssignPrivateIpAddresses = "ec2:AssignPrivateIpAddresses",
    /**
     * Grants permission to assign one or more secondary private IP addresses to a pri
     * vate NAT gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssignPrivateNatGatewayAddress.html
     */
    AssignPrivateNatGatewayAddress = "ec2:AssignPrivateNatGatewayAddress",
    /**
     * Grants permission to associate an Elastic IP address (EIP) with an instance or
     * a network interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateAddress.html
     */
    AssociateAddress = "ec2:AssociateAddress",
    /**
     * Grants permission to assign billing of the unused capacity of a shared Capacity
     * Reservation to a consumer account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateCapacityReservationBillingOwner.html
     */
    AssociateCapacityReservationBillingOwner = "ec2:AssociateCapacityReservationBillingOwner",
    /**
     * Grants permission to associate a target network with a Client VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateClientVpnTargetNetwork.html
     */
    AssociateClientVpnTargetNetwork = "ec2:AssociateClientVpnTargetNetwork",
    /**
     * Grants permission to associate or disassociate a set of DHCP options with a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateDhcpOptions.html
     */
    AssociateDhcpOptions = "ec2:AssociateDhcpOptions",
    /**
     * Grants permission to associate an ACM certificate with an IAM role to be used i
     * n an EC2 Enclave
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateEnclaveCertificateIamRole.html
     */
    AssociateEnclaveCertificateIamRole = "ec2:AssociateEnclaveCertificateIamRole",
    /**
     * Grants permission to associate an IAM instance profile with a running or stoppe
     * d instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateIamInstanceProfile.html
     */
    AssociateIamInstanceProfile = "ec2:AssociateIamInstanceProfile",
    /**
     * Grants permission to associate one or more targets with an event window
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateInstanceEventWindow.html
     */
    AssociateInstanceEventWindow = "ec2:AssociateInstanceEventWindow",
    /**
     * Grants permission to associate an Autonomous System Number (ASN) with a BYOIP C
     * IDR
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateIpamByoasn.html
     */
    AssociateIpamByoasn = "ec2:AssociateIpamByoasn",
    /**
     * Grants permission to associate an IPAM resource discovery with an Amazon VPC IP
     * AM
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateIpamResourceDiscovery.html
     */
    AssociateIpamResourceDiscovery = "ec2:AssociateIpamResourceDiscovery",
    /**
     * Grants permission to associate an Elastic IP address and private IP address wit
     * h a public Nat gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateNatGatewayAddress.html
     */
    AssociateNatGatewayAddress = "ec2:AssociateNatGatewayAddress",
    /**
     * Grants permission to associate a subnet or gateway with a route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateRouteTable.html
     */
    AssociateRouteTable = "ec2:AssociateRouteTable",
    /**
     * Grants permission to associate a security group with another VPC in the same Re
     * gion
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateSecurityGroupVpc.html
     */
    AssociateSecurityGroupVpc = "ec2:AssociateSecurityGroupVpc",
    /**
     * Grants permission to associate a CIDR block with a subnet
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateSubnetCidrBlock.html
     */
    AssociateSubnetCidrBlock = "ec2:AssociateSubnetCidrBlock",
    /**
     * Grants permission to associate an attachment and list of subnets with a transit
     * gateway multicast domain
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateTransitGatewayMulticastDomain.html
     */
    AssociateTransitGatewayMulticastDomain = "ec2:AssociateTransitGatewayMulticastDomain",
    /**
     * Grants permission to associate a policy table with a transit gateway attachment
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateTransitGatewayPolicyTable.html
     */
    AssociateTransitGatewayPolicyTable = "ec2:AssociateTransitGatewayPolicyTable",
    /**
     * Grants permission to associate an attachment with a transit gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateTransitGatewayRouteTable.html
     */
    AssociateTransitGatewayRouteTable = "ec2:AssociateTransitGatewayRouteTable",
    /**
     * Grants permission to associate a branch network interface with a trunk network
     * interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateTrunkInterface.html
     */
    AssociateTrunkInterface = "ec2:AssociateTrunkInterface",
    /**
     * Grants permission to associate an AWS Web Application Firewall (WAF) web access
     * control list (ACL) with a Verified Access instance
     *
     * See https://docs.aws.amazon.com/verified-access/latest/ug/waf-integration.html
     */
    AssociateVerifiedAccessInstanceWebAcl = "ec2:AssociateVerifiedAccessInstanceWebAcl",
    /**
     * Grants permission to associate a CIDR block with a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AssociateVpcCidrBlock.html
     */
    AssociateVpcCidrBlock = "ec2:AssociateVpcCidrBlock",
    /**
     * Grants permission to link an EC2-Classic instance to a ClassicLink-enabled VPC
     * through one or more of the VPC's security groups
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AttachClassicLinkVpc.html
     */
    AttachClassicLinkVpc = "ec2:AttachClassicLinkVpc",
    /**
     * Grants permission to attach an internet gateway to a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AttachInternetGateway.html
     */
    AttachInternetGateway = "ec2:AttachInternetGateway",
    /**
     * Grants permission to attach a network interface to an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AttachNetworkInterface.html
     */
    AttachNetworkInterface = "ec2:AttachNetworkInterface",
    /**
     * Grants permission to attach a trust provider to a Verified Access instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AttachVerifiedAccessTrustProvider.html
     */
    AttachVerifiedAccessTrustProvider = "ec2:AttachVerifiedAccessTrustProvider",
    /**
     * Grants permission to attach an EBS volume to a running or stopped instance and
     * expose it to the instance with the specified device name
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AttachVolume.html
     */
    AttachVolume = "ec2:AttachVolume",
    /**
     * Grants permission to attach a virtual private gateway to a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AttachVpnGateway.html
     */
    AttachVpnGateway = "ec2:AttachVpnGateway",
    /**
     * Grants permission to add an inbound authorization rule to a Client VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AuthorizeClientVpnIngress.html
     */
    AuthorizeClientVpnIngress = "ec2:AuthorizeClientVpnIngress",
    /**
     * Grants permission to add one or more outbound rules to a VPC security group. Po
     * licies using the security-group-rule resource-level permission are only enforce
     * d when the API request includes TagSpecifications
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AuthorizeSecurityGroupEgress.html
     */
    AuthorizeSecurityGroupEgress = "ec2:AuthorizeSecurityGroupEgress",
    /**
     * Grants permission to add one or more inbound rules to a VPC security group. Pol
     * icies using the security-group-rule resource-level permission are only enforced
     * when the API request includes TagSpecifications
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_AuthorizeSecurityGroupIngress.html
     */
    AuthorizeSecurityGroupIngress = "ec2:AuthorizeSecurityGroupIngress",
    /**
     * Grants permission to bundle an instance store-backed Windows instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_BundleInstance.html
     */
    BundleInstance = "ec2:BundleInstance",
    /**
     * Grants permission to cancel a bundling operation
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CancelBundleTask.html
     */
    CancelBundleTask = "ec2:CancelBundleTask",
    /**
     * Grants permission to cancel a Capacity Reservation and release the reserved cap
     * acity
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CancelCapacityReservation.html
     */
    CancelCapacityReservation = "ec2:CancelCapacityReservation",
    /**
     * Grants permission to cancel one or more Capacity Reservation Fleets
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CancelCapacityReservationFleets.html
     */
    CancelCapacityReservationFleets = "ec2:CancelCapacityReservationFleets",
    /**
     * Grants permission to cancel an active conversion task
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CancelConversionTask.html
     */
    CancelConversionTask = "ec2:CancelConversionTask",
    /**
     * Grants permission to cancel a declarative policies report
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CancelDeclarativePoliciesReport.html
     */
    CancelDeclarativePoliciesReport = "ec2:CancelDeclarativePoliciesReport",
    /**
     * Grants permission to cancel an active export task
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CancelExportTask.html
     */
    CancelExportTask = "ec2:CancelExportTask",
    /**
     * Grants permission to remove your AWS account from the launch permissions for th
     * e specified AMI
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CancelImageLaunchPermission.html
     */
    CancelImageLaunchPermission = "ec2:CancelImageLaunchPermission",
    /**
     * Grants permission to cancel an in-process import virtual machine or import snap
     * shot task
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CancelImportTask.html
     */
    CancelImportTask = "ec2:CancelImportTask",
    /**
     * Grants permission to cancel a Reserved Instance listing on the Reserved Instanc
     * e Marketplace
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CancelReservedInstancesListing.html
     */
    CancelReservedInstancesListing = "ec2:CancelReservedInstancesListing",
    /**
     * Grants permission to cancel one or more Spot Fleet requests
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CancelSpotFleetRequests.html
     */
    CancelSpotFleetRequests = "ec2:CancelSpotFleetRequests",
    /**
     * Grants permission to cancel one or more Spot Instance requests
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CancelSpotInstanceRequests.html
     */
    CancelSpotInstanceRequests = "ec2:CancelSpotInstanceRequests",
    /**
     * Grants permission to determine whether an owned product code is associated with
     * an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ConfirmProductInstance.html
     */
    ConfirmProductInstance = "ec2:ConfirmProductInstance",
    /**
     * Grants permission to copy a source Amazon FPGA image (AFI) to the current Regio
     * n. Resource-level permissions specified for this action apply to the new AFI on
     * ly. They do not apply to the source AFI
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CopyFpgaImage.html
     */
    CopyFpgaImage = "ec2:CopyFpgaImage",
    /**
     * Grants permission to copy an Amazon Machine Image (AMI) from a source Region to
     * the current Region
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CopyImage.html
     */
    CopyImage = "ec2:CopyImage",
    /**
     * Grants permission to copy a point-in-time snapshot of an EBS volume and store i
     * t in Amazon S3. Resource-level permissions specified for this action apply to t
     * he new snapshot only. They do not apply to the source snapshot
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CopySnapshot.html
     */
    CopySnapshot = "ec2:CopySnapshot",
    /**
     * Grants permission to create a Capacity Reservation
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateCapacityReservation.html
     */
    CreateCapacityReservation = "ec2:CreateCapacityReservation",
    /**
     * Grants permission to create a new Capacity Reservation by splitting the availab
     * le capacity of the source Capacity Reservation
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateCapacityReservationBySplitting.html
     */
    CreateCapacityReservationBySplitting = "ec2:CreateCapacityReservationBySplitting",
    /**
     * Grants permission to create a Capacity Reservation Fleet
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateCapacityReservationFleet.html
     */
    CreateCapacityReservationFleet = "ec2:CreateCapacityReservationFleet",
    /**
     * Grants permission to create a carrier gateway and provides CSP connectivity to
     * VPC customers
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateCarrierGateway.html
     */
    CreateCarrierGateway = "ec2:CreateCarrierGateway",
    /**
     * Grants permission to create a Client VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateClientVpnEndpoint.html
     */
    CreateClientVpnEndpoint = "ec2:CreateClientVpnEndpoint",
    /**
     * Grants permission to add a network route to a Client VPN endpoint's route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateClientVpnRoute.html
     */
    CreateClientVpnRoute = "ec2:CreateClientVpnRoute",
    /**
     * Grants permission to create a range of customer-owned IP (CoIP) addresses
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateCoipCidr.html
     */
    CreateCoipCidr = "ec2:CreateCoipCidr",
    /**
     * Grants permission to create a pool of customer-owned IP (CoIP) addresses
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateCoipPool.html
     */
    CreateCoipPool = "ec2:CreateCoipPool",
    /**
     * Grants permission to allow a service to access a customer-owned IP (CoIP) pool
     *
     * See https://docs.aws.amazon.com/outposts/latest/userguide/identity-access-management.html
     */
    CreateCoipPoolPermission = "ec2:CreateCoipPoolPermission",
    /**
     * Grants permission to create a customer gateway, which provides information to A
     * WS about your customer gateway device
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateCustomerGateway.html
     */
    CreateCustomerGateway = "ec2:CreateCustomerGateway",
    /**
     * Grants permission to create a default subnet in a specified Availability Zone i
     * n a default VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateDefaultSubnet.html
     */
    CreateDefaultSubnet = "ec2:CreateDefaultSubnet",
    /**
     * Grants permission to create a default VPC with a default subnet in each Availab
     * ility Zone
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateDefaultVpc.html
     */
    CreateDefaultVpc = "ec2:CreateDefaultVpc",
    /**
     * Grants permission to create a set of DHCP options for a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateDhcpOptions.html
     */
    CreateDhcpOptions = "ec2:CreateDhcpOptions",
    /**
     * Grants permission to create an egress-only internet gateway for a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateEgressOnlyInternetGateway.html
     */
    CreateEgressOnlyInternetGateway = "ec2:CreateEgressOnlyInternetGateway",
    /**
     * Grants permission to launch an EC2 Fleet. Resource-level permissions for this a
     * ction do not include the resources specified in a launch template. To specify r
     * esource-level permissions for resources specified in a launch template, you mus
     * t include the resources in the RunInstances action statement
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateFleet.html
     */
    CreateFleet = "ec2:CreateFleet",
    /**
     * Grants permission to create one or more flow logs to capture IP traffic for a n
     * etwork interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateFlowLogs.html
     */
    CreateFlowLogs = "ec2:CreateFlowLogs",
    /**
     * Grants permission to create an Amazon FPGA Image (AFI) from a design checkpoint
     * (DCP)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateFpgaImage.html
     */
    CreateFpgaImage = "ec2:CreateFpgaImage",
    /**
     * Grants permission to create an Amazon EBS-backed AMI from a stopped or running
     * Amazon EBS-backed instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateImage.html
     */
    CreateImage = "ec2:CreateImage",
    /**
     * Grants permission to create an EC2 Instance Connect Endpoint that allows you to
     * connect to an instance without a public IPv4 address
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateInstanceConnectEndpoint.html
     */
    CreateInstanceConnectEndpoint = "ec2:CreateInstanceConnectEndpoint",
    /**
     * Grants permission to create an event window in which scheduled events for the a
     * ssociated Amazon EC2 instances can run
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateInstanceEventWindow.html
     */
    CreateInstanceEventWindow = "ec2:CreateInstanceEventWindow",
    /**
     * Grants permission to export a running or stopped instance to an Amazon S3 bucke
     * t
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateInstanceExportTask.html
     */
    CreateInstanceExportTask = "ec2:CreateInstanceExportTask",
    /**
     * Grants permission to create an internet gateway for a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateInternetGateway.html
     */
    CreateInternetGateway = "ec2:CreateInternetGateway",
    /**
     * Grants permission to create an Amazon VPC IP Address Manager (IPAM)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateIpam.html
     */
    CreateIpam = "ec2:CreateIpam",
    /**
     * Grants permission to create a verification token, which proves ownership of an
     * external resource
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateIpamExternalResourceVerificationToken.html
     */
    CreateIpamExternalResourceVerificationToken = "ec2:CreateIpamExternalResourceVerificationToken",
    /**
     * Grants permission to create an IP address pool for Amazon VPC IP Address Manage
     * r (IPAM), which is a collection of contiguous IP address CIDRs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateIpamPool.html
     */
    CreateIpamPool = "ec2:CreateIpamPool",
    /**
     * Grants permission to create an IPAM resource discovery
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateIpamResourceDiscovery.html
     */
    CreateIpamResourceDiscovery = "ec2:CreateIpamResourceDiscovery",
    /**
     * Grants permission to create an Amazon VPC IP Address Manager (IPAM) scope, whic
     * h is the highest-level container within IPAM
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateIpamScope.html
     */
    CreateIpamScope = "ec2:CreateIpamScope",
    /**
     * Grants permission to create a 2048-bit RSA key pair
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateKeyPair.html
     */
    CreateKeyPair = "ec2:CreateKeyPair",
    /**
     * Grants permission to create a launch template
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateLaunchTemplate.html
     */
    CreateLaunchTemplate = "ec2:CreateLaunchTemplate",
    /**
     * Grants permission to create a new version of a launch template
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateLaunchTemplateVersion.html
     */
    CreateLaunchTemplateVersion = "ec2:CreateLaunchTemplateVersion",
    /**
     * Grants permission to create a static route for a local gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateLocalGatewayRoute.html
     */
    CreateLocalGatewayRoute = "ec2:CreateLocalGatewayRoute",
    /**
     * Grants permission to create a local gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateLocalGatewayRouteTable.html
     */
    CreateLocalGatewayRouteTable = "ec2:CreateLocalGatewayRouteTable",
    /**
     * Grants permission to allow a service to access a local gateway route table
     *
     * See https://docs.aws.amazon.com/outposts/latest/userguide/identity-access-management.html
     */
    CreateLocalGatewayRouteTablePermission = "ec2:CreateLocalGatewayRouteTablePermission",
    /**
     * Grants permission to create a local gateway route table virtual interface group
     * association
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateLocalGatewayRouteTableVirtualInterfaceGroupAssociation.html
     */
    CreateLocalGatewayRouteTableVirtualInterfaceGroupAssociation = "ec2:CreateLocalGatewayRouteTableVirtualInterfaceGroupAssociation",
    /**
     * Grants permission to associate a VPC with a local gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateLocalGatewayRouteTableVpcAssociation.html
     */
    CreateLocalGatewayRouteTableVpcAssociation = "ec2:CreateLocalGatewayRouteTableVpcAssociation",
    /**
     * Grants permission to create a managed prefix list
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateManagedPrefixList.html
     */
    CreateManagedPrefixList = "ec2:CreateManagedPrefixList",
    /**
     * Grants permission to create a NAT gateway in a subnet
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateNatGateway.html
     */
    CreateNatGateway = "ec2:CreateNatGateway",
    /**
     * Grants permission to create a network ACL in a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateNetworkAcl.html
     */
    CreateNetworkAcl = "ec2:CreateNetworkAcl",
    /**
     * Grants permission to create a numbered entry (a rule) in a network ACL
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateNetworkAclEntry.html
     */
    CreateNetworkAclEntry = "ec2:CreateNetworkAclEntry",
    /**
     * Grants permission to create a Network Access Scope
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateNetworkInsightsAccessScope.html
     */
    CreateNetworkInsightsAccessScope = "ec2:CreateNetworkInsightsAccessScope",
    /**
     * Grants permission to create a path to analyze for reachability
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateNetworkInsightsPath.html
     */
    CreateNetworkInsightsPath = "ec2:CreateNetworkInsightsPath",
    /**
     * Grants permission to create a network interface in a subnet
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateNetworkInterface.html
     */
    CreateNetworkInterface = "ec2:CreateNetworkInterface",
    /**
     * Grants permission to create a permission for an AWS-authorized user to perform
     * certain operations on a network interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateNetworkInterfacePermission.html
     */
    CreateNetworkInterfacePermission = "ec2:CreateNetworkInterfacePermission",
    /**
     * Grants permission to create a placement group
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreatePlacementGroup.html
     */
    CreatePlacementGroup = "ec2:CreatePlacementGroup",
    /**
     * Grants permission to create a public IPv4 address pool for public IPv4 CIDRs th
     * at you own and bring to Amazon to manage with Amazon VPC IP Address Manager (IP
     * AM)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreatePublicIpv4Pool.html
     */
    CreatePublicIpv4Pool = "ec2:CreatePublicIpv4Pool",
    /**
     * Grants permission to create a root volume replacement task
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateReplaceRootVolumeTask.html
     */
    CreateReplaceRootVolumeTask = "ec2:CreateReplaceRootVolumeTask",
    /**
     * Grants permission to create a listing for Standard Reserved Instances to be sol
     * d in the Reserved Instance Marketplace
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateReservedInstancesListing.html
     */
    CreateReservedInstancesListing = "ec2:CreateReservedInstancesListing",
    /**
     * Grants permission to start a task that restores an AMI from an S3 object previo
     * usly created by using CreateStoreImageTask
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateRestoreImageTask.html
     */
    CreateRestoreImageTask = "ec2:CreateRestoreImageTask",
    /**
     * Grants permission to create a route in a VPC route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateRoute.html
     */
    CreateRoute = "ec2:CreateRoute",
    /**
     * Grants permission to create a route table for a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateRouteTable.html
     */
    CreateRouteTable = "ec2:CreateRouteTable",
    /**
     * Grants permission to create a security group
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateSecurityGroup.html
     */
    CreateSecurityGroup = "ec2:CreateSecurityGroup",
    /**
     * Grants permission to create a snapshot of an EBS volume and store it in Amazon
     * S3
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateSnapshot.html
     */
    CreateSnapshot = "ec2:CreateSnapshot",
    /**
     * Grants permission to create crash-consistent snapshots of multiple EBS volumes
     * and store them in Amazon S3
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateSnapshots.html
     */
    CreateSnapshots = "ec2:CreateSnapshots",
    /**
     * Grants permission to create a data feed for Spot Instances to view Spot Instanc
     * e usage logs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateSpotDatafeedSubscription.html
     */
    CreateSpotDatafeedSubscription = "ec2:CreateSpotDatafeedSubscription",
    /**
     * Grants permission to store an AMI as a single object in an S3 bucket
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateStoreImageTask.html
     */
    CreateStoreImageTask = "ec2:CreateStoreImageTask",
    /**
     * Grants permission to create a subnet in a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateSubnet.html
     */
    CreateSubnet = "ec2:CreateSubnet",
    /**
     * Grants permission to create a subnet CIDR reservation
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateSubnetCidrReservation.html
     */
    CreateSubnetCidrReservation = "ec2:CreateSubnetCidrReservation",
    /**
     * Grants permission to add or overwrite one or more tags for Amazon EC2 resources
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTags.html
     */
    CreateTags = "ec2:CreateTags",
    /**
     * Grants permission to create a traffic mirror filter
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTrafficMirrorFilter.html
     */
    CreateTrafficMirrorFilter = "ec2:CreateTrafficMirrorFilter",
    /**
     * Grants permission to create a traffic mirror filter rule
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTrafficMirrorFilterRule.html
     */
    CreateTrafficMirrorFilterRule = "ec2:CreateTrafficMirrorFilterRule",
    /**
     * Grants permission to create a traffic mirror session
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTrafficMirrorSession.html
     */
    CreateTrafficMirrorSession = "ec2:CreateTrafficMirrorSession",
    /**
     * Grants permission to create a traffic mirror target
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTrafficMirrorTarget.html
     */
    CreateTrafficMirrorTarget = "ec2:CreateTrafficMirrorTarget",
    /**
     * Grants permission to create a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTransitGateway.html
     */
    CreateTransitGateway = "ec2:CreateTransitGateway",
    /**
     * Grants permission to create a Connect attachment from a specified transit gatew
     * ay attachment
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTransitGatewayConnect.html
     */
    CreateTransitGatewayConnect = "ec2:CreateTransitGatewayConnect",
    /**
     * Grants permission to create a Connect peer between a transit gateway and an app
     * liance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTransitGatewayConnectPeer.html
     */
    CreateTransitGatewayConnectPeer = "ec2:CreateTransitGatewayConnectPeer",
    /**
     * Grants permission to create a multicast domain for a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTransitGatewayMulticastDomain.html
     */
    CreateTransitGatewayMulticastDomain = "ec2:CreateTransitGatewayMulticastDomain",
    /**
     * Grants permission to request a transit gateway peering attachment between a req
     * uester and accepter transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTransitGatewayPeeringAttachment.html
     */
    CreateTransitGatewayPeeringAttachment = "ec2:CreateTransitGatewayPeeringAttachment",
    /**
     * Grants permission to create a transit gateway policy table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTransitGatewayPolicyTable.html
     */
    CreateTransitGatewayPolicyTable = "ec2:CreateTransitGatewayPolicyTable",
    /**
     * Grants permission to create a transit gateway prefix list reference
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTransitGatewayPrefixListReference.html
     */
    CreateTransitGatewayPrefixListReference = "ec2:CreateTransitGatewayPrefixListReference",
    /**
     * Grants permission to create a static route for a transit gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTransitGatewayRoute.html
     */
    CreateTransitGatewayRoute = "ec2:CreateTransitGatewayRoute",
    /**
     * Grants permission to create a route table for a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTransitGatewayRouteTable.html
     */
    CreateTransitGatewayRouteTable = "ec2:CreateTransitGatewayRouteTable",
    /**
     * Grants permission to create an announcement for a transit gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTransitGatewayRouteTableAnnouncement.html
     */
    CreateTransitGatewayRouteTableAnnouncement = "ec2:CreateTransitGatewayRouteTableAnnouncement",
    /**
     * Grants permission to attach a VPC to a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateTransitGatewayVpcAttachment.html
     */
    CreateTransitGatewayVpcAttachment = "ec2:CreateTransitGatewayVpcAttachment",
    /**
     * Grants permission to create a Verified Access endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVerifiedAccessEndpoint.html
     */
    CreateVerifiedAccessEndpoint = "ec2:CreateVerifiedAccessEndpoint",
    /**
     * Grants permission to create a Verified Access group
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVerifiedAccessGroup.html
     */
    CreateVerifiedAccessGroup = "ec2:CreateVerifiedAccessGroup",
    /**
     * Grants permission to create a Verified Access instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVerifiedAccessInstance.html
     */
    CreateVerifiedAccessInstance = "ec2:CreateVerifiedAccessInstance",
    /**
     * Grants permission to create a verified trust provider
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVerifiedAccessTrustProvider.html
     */
    CreateVerifiedAccessTrustProvider = "ec2:CreateVerifiedAccessTrustProvider",
    /**
     * Grants permission to create an EBS volume
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVolume.html
     */
    CreateVolume = "ec2:CreateVolume",
    /**
     * Grants permission to create a VPC with a specified CIDR block
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVpc.html
     */
    CreateVpc = "ec2:CreateVpc",
    /**
     * Grants permission to create an exclusion list for blocked public access on a VP
     * C
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVpcBlockPublicAccessExclusion.html
     */
    CreateVpcBlockPublicAccessExclusion = "ec2:CreateVpcBlockPublicAccessExclusion",
    /**
     * Grants permission to create a VPC endpoint for an AWS service
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVpcEndpoint.html
     */
    CreateVpcEndpoint = "ec2:CreateVpcEndpoint",
    /**
     * Grants permission to create a connection notification for a VPC endpoint or VPC
     * endpoint service
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVpcEndpointConnectionNotification.html
     */
    CreateVpcEndpointConnectionNotification = "ec2:CreateVpcEndpointConnectionNotification",
    /**
     * Grants permission to create a VPC endpoint service configuration to which servi
     * ce consumers (AWS accounts, IAM users, and IAM roles) can connect
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVpcEndpointServiceConfiguration.html
     */
    CreateVpcEndpointServiceConfiguration = "ec2:CreateVpcEndpointServiceConfiguration",
    /**
     * Grants permission to request a VPC peering connection between two VPCs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVpcPeeringConnection.html
     */
    CreateVpcPeeringConnection = "ec2:CreateVpcPeeringConnection",
    /**
     * Grants permission to create a VPN connection between a virtual private gateway
     * or transit gateway and a customer gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVpnConnection.html
     */
    CreateVpnConnection = "ec2:CreateVpnConnection",
    /**
     * Grants permission to create a static route for a VPN connection between a virtu
     * al private gateway and a customer gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVpnConnectionRoute.html
     */
    CreateVpnConnectionRoute = "ec2:CreateVpnConnectionRoute",
    /**
     * Grants permission to create a virtual private gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_CreateVpnGateway.html
     */
    CreateVpnGateway = "ec2:CreateVpnGateway",
    /**
     * Grants permission to delete a carrier gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteCarrierGateway.html
     */
    DeleteCarrierGateway = "ec2:DeleteCarrierGateway",
    /**
     * Grants permission to delete a Client VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteClientVpnEndpoint.html
     */
    DeleteClientVpnEndpoint = "ec2:DeleteClientVpnEndpoint",
    /**
     * Grants permission to delete a route from a Client VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteClientVpnRoute.html
     */
    DeleteClientVpnRoute = "ec2:DeleteClientVpnRoute",
    /**
     * Grants permission to delete a range of customer-owned IP (CoIP) addresses
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteCoipCidr.html
     */
    DeleteCoipCidr = "ec2:DeleteCoipCidr",
    /**
     * Grants permission to delete a pool of customer-owned IP (CoIP) addresses
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteCoipPool.html
     */
    DeleteCoipPool = "ec2:DeleteCoipPool",
    /**
     * Grants permission to deny a service from accessing a customer-owned IP (CoIP) p
     * ool
     *
     * See https://docs.aws.amazon.com/outposts/latest/userguide/identity-access-management.html
     */
    DeleteCoipPoolPermission = "ec2:DeleteCoipPoolPermission",
    /**
     * Grants permission to delete a customer gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteCustomerGateway.html
     */
    DeleteCustomerGateway = "ec2:DeleteCustomerGateway",
    /**
     * Grants permission to delete a set of DHCP options
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteDhcpOptions.html
     */
    DeleteDhcpOptions = "ec2:DeleteDhcpOptions",
    /**
     * Grants permission to delete an egress-only internet gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteEgressOnlyInternetGateway.html
     */
    DeleteEgressOnlyInternetGateway = "ec2:DeleteEgressOnlyInternetGateway",
    /**
     * Grants permission to delete one or more EC2 Fleets
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteFleets.html
     */
    DeleteFleets = "ec2:DeleteFleets",
    /**
     * Grants permission to delete one or more flow logs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteFlowLogs.html
     */
    DeleteFlowLogs = "ec2:DeleteFlowLogs",
    /**
     * Grants permission to delete an Amazon FPGA Image (AFI)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteFpgaImage.html
     */
    DeleteFpgaImage = "ec2:DeleteFpgaImage",
    /**
     * Grants permission to delete an EC2 Instance Connect Endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteInstanceConnectEndpoint.html
     */
    DeleteInstanceConnectEndpoint = "ec2:DeleteInstanceConnectEndpoint",
    /**
     * Grants permission to delete the specified event window
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteInstanceEventWindow.html
     */
    DeleteInstanceEventWindow = "ec2:DeleteInstanceEventWindow",
    /**
     * Grants permission to delete an internet gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteInternetGateway.html
     */
    DeleteInternetGateway = "ec2:DeleteInternetGateway",
    /**
     * Grants permission to delete an Amazon VPC IP Address Manager (IPAM) and remove
     * all monitored data associated with the IPAM including the historical data for C
     * IDRs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteIpam.html
     */
    DeleteIpam = "ec2:DeleteIpam",
    /**
     * Grants permission to delete a verification token, which proves ownership of an
     * external resource
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteIpamExternalResourceVerificationToken.html
     */
    DeleteIpamExternalResourceVerificationToken = "ec2:DeleteIpamExternalResourceVerificationToken",
    /**
     * Grants permission to delete an Amazon VPC IP Address Manager (IPAM) pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteIpamPool.html
     */
    DeleteIpamPool = "ec2:DeleteIpamPool",
    /**
     * Grants permission to delete an IPAM resource discovery
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteIpamResourceDiscovery.html
     */
    DeleteIpamResourceDiscovery = "ec2:DeleteIpamResourceDiscovery",
    /**
     * Grants permission to delete the scope for an Amazon VPC IP Address Manager (IPA
     * M)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteIpamScope.html
     */
    DeleteIpamScope = "ec2:DeleteIpamScope",
    /**
     * Grants permission to delete a  key pair by removing the public key from Amazon
     * EC2
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteKeyPair.html
     */
    DeleteKeyPair = "ec2:DeleteKeyPair",
    /**
     * Grants permission to delete a launch template and its associated versions
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteLaunchTemplate.html
     */
    DeleteLaunchTemplate = "ec2:DeleteLaunchTemplate",
    /**
     * Grants permission to delete one or more versions of a launch template
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteLaunchTemplateVersions.html
     */
    DeleteLaunchTemplateVersions = "ec2:DeleteLaunchTemplateVersions",
    /**
     * Grants permission to delete a route from a local gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteLocalGatewayRoute.html
     */
    DeleteLocalGatewayRoute = "ec2:DeleteLocalGatewayRoute",
    /**
     * Grants permission to delete a local gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteLocalGatewayRouteTable.html
     */
    DeleteLocalGatewayRouteTable = "ec2:DeleteLocalGatewayRouteTable",
    /**
     * Grants permission to deny a service from accessing a local gateway route table
     *
     * See https://docs.aws.amazon.com/outposts/latest/userguide/identity-access-management.html
     */
    DeleteLocalGatewayRouteTablePermission = "ec2:DeleteLocalGatewayRouteTablePermission",
    /**
     * Grants permission to delete a local gateway route table virtual interface group
     * association
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteLocalGatewayRouteTableVirtualInterfaceGroupAssociation.html
     */
    DeleteLocalGatewayRouteTableVirtualInterfaceGroupAssociation = "ec2:DeleteLocalGatewayRouteTableVirtualInterfaceGroupAssociation",
    /**
     * Grants permission to delete an association between a VPC and local gateway rout
     * e table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteLocalGatewayRouteTableVpcAssociation.html
     */
    DeleteLocalGatewayRouteTableVpcAssociation = "ec2:DeleteLocalGatewayRouteTableVpcAssociation",
    /**
     * Grants permission to delete a managed prefix list
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteManagedPrefixList.html
     */
    DeleteManagedPrefixList = "ec2:DeleteManagedPrefixList",
    /**
     * Grants permission to delete a NAT gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteNatGateway.html
     */
    DeleteNatGateway = "ec2:DeleteNatGateway",
    /**
     * Grants permission to delete a network ACL
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteNetworkAcl.html
     */
    DeleteNetworkAcl = "ec2:DeleteNetworkAcl",
    /**
     * Grants permission to delete an inbound or outbound entry (rule) from a network
     * ACL
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteNetworkAclEntry.html
     */
    DeleteNetworkAclEntry = "ec2:DeleteNetworkAclEntry",
    /**
     * Grants permission to delete a Network Access Scope
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteNetworkInsightsAccessScope.html
     */
    DeleteNetworkInsightsAccessScope = "ec2:DeleteNetworkInsightsAccessScope",
    /**
     * Grants permission to delete a Network Access Scope analysis
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteNetworkInsightsAccessScopeAnalysis.html
     */
    DeleteNetworkInsightsAccessScopeAnalysis = "ec2:DeleteNetworkInsightsAccessScopeAnalysis",
    /**
     * Grants permission to delete a network insights analysis
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteNetworkInsightsAnalysis.html
     */
    DeleteNetworkInsightsAnalysis = "ec2:DeleteNetworkInsightsAnalysis",
    /**
     * Grants permission to delete a network insights path
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteNetworkInsightsPath.html
     */
    DeleteNetworkInsightsPath = "ec2:DeleteNetworkInsightsPath",
    /**
     * Grants permission to delete a detached network interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteNetworkInterface.html
     */
    DeleteNetworkInterface = "ec2:DeleteNetworkInterface",
    /**
     * Grants permission to delete a permission that is associated with a network inte
     * rface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteNetworkInterfacePermission.html
     */
    DeleteNetworkInterfacePermission = "ec2:DeleteNetworkInterfacePermission",
    /**
     * Grants permission to delete a placement group
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeletePlacementGroup.html
     */
    DeletePlacementGroup = "ec2:DeletePlacementGroup",
    /**
     * Grants permission to delete a public IPv4 address pool for public IPv4 CIDRs th
     * at you own and brought to Amazon to manage with Amazon VPC IP Address Manager (
     * IPAM)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeletePublicIpv4Pool.html
     */
    DeletePublicIpv4Pool = "ec2:DeletePublicIpv4Pool",
    /**
     * Grants permission to delete the queued purchases for the specified Reserved Ins
     * tances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteQueuedReservedInstances.html
     */
    DeleteQueuedReservedInstances = "ec2:DeleteQueuedReservedInstances",
    /**
     * Grants permission to remove an IAM policy that enables cross-account sharing fr
     * om a resource
     *
     * See https://docs.aws.amazon.com/vpc/latest/ipam/share-pool-ipam.html
     */
    DeleteResourcePolicy = "ec2:DeleteResourcePolicy",
    /**
     * Grants permission to delete a route from a route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteRoute.html
     */
    DeleteRoute = "ec2:DeleteRoute",
    /**
     * Grants permission to delete a route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteRouteTable.html
     */
    DeleteRouteTable = "ec2:DeleteRouteTable",
    /**
     * Grants permission to delete a security group
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteSecurityGroup.html
     */
    DeleteSecurityGroup = "ec2:DeleteSecurityGroup",
    /**
     * Grants permission to delete a snapshot of an EBS volume
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteSnapshot.html
     */
    DeleteSnapshot = "ec2:DeleteSnapshot",
    /**
     * Grants permission to delete a data feed for Spot Instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteSpotDatafeedSubscription.html
     */
    DeleteSpotDatafeedSubscription = "ec2:DeleteSpotDatafeedSubscription",
    /**
     * Grants permission to delete a subnet
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteSubnet.html
     */
    DeleteSubnet = "ec2:DeleteSubnet",
    /**
     * Grants permission to delete a subnet CIDR reservation
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteSubnetCidrReservation.html
     */
    DeleteSubnetCidrReservation = "ec2:DeleteSubnetCidrReservation",
    /**
     * Grants permission to delete one or more tags from Amazon EC2 resources
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTags.html
     */
    DeleteTags = "ec2:DeleteTags",
    /**
     * Grants permission to delete a traffic mirror filter
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTrafficMirrorFilter.html
     */
    DeleteTrafficMirrorFilter = "ec2:DeleteTrafficMirrorFilter",
    /**
     * Grants permission to delete a traffic mirror filter rule
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTrafficMirrorFilterRule.html
     */
    DeleteTrafficMirrorFilterRule = "ec2:DeleteTrafficMirrorFilterRule",
    /**
     * Grants permission to delete a traffic mirror session
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTrafficMirrorSession.html
     */
    DeleteTrafficMirrorSession = "ec2:DeleteTrafficMirrorSession",
    /**
     * Grants permission to delete a traffic mirror target
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTrafficMirrorTarget.html
     */
    DeleteTrafficMirrorTarget = "ec2:DeleteTrafficMirrorTarget",
    /**
     * Grants permission to delete a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTransitGateway.html
     */
    DeleteTransitGateway = "ec2:DeleteTransitGateway",
    /**
     * Grants permission to delete a transit gateway connect attachment
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTransitGatewayConnect.html
     */
    DeleteTransitGatewayConnect = "ec2:DeleteTransitGatewayConnect",
    /**
     * Grants permission to delete a transit gateway connect peer
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTransitGatewayConnectPeer.html
     */
    DeleteTransitGatewayConnectPeer = "ec2:DeleteTransitGatewayConnectPeer",
    /**
     * Grants permission to delete a transit gateway multicast domain
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTransitGatewayMulticastDomain.html
     */
    DeleteTransitGatewayMulticastDomain = "ec2:DeleteTransitGatewayMulticastDomain",
    /**
     * Grants permission to delete a peering attachment from a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTransitGatewayPeeringAttachment.html
     */
    DeleteTransitGatewayPeeringAttachment = "ec2:DeleteTransitGatewayPeeringAttachment",
    /**
     * Grants permission to delete a transit gateway policy table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTransitGatewayPolicyTable.html
     */
    DeleteTransitGatewayPolicyTable = "ec2:DeleteTransitGatewayPolicyTable",
    /**
     * Grants permission to delete a transit gateway prefix list reference
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTransitGatewayPrefixListReference.html
     */
    DeleteTransitGatewayPrefixListReference = "ec2:DeleteTransitGatewayPrefixListReference",
    /**
     * Grants permission to delete a route from a transit gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTransitGatewayRoute.html
     */
    DeleteTransitGatewayRoute = "ec2:DeleteTransitGatewayRoute",
    /**
     * Grants permission to delete a transit gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTransitGatewayRouteTable.html
     */
    DeleteTransitGatewayRouteTable = "ec2:DeleteTransitGatewayRouteTable",
    /**
     * Grants permission to delete a transit gateway route table announcement
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTransitGatewayRouteTableAnnouncement.html
     */
    DeleteTransitGatewayRouteTableAnnouncement = "ec2:DeleteTransitGatewayRouteTableAnnouncement",
    /**
     * Grants permission to delete a VPC attachment from a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteTransitGatewayVpcAttachment.html
     */
    DeleteTransitGatewayVpcAttachment = "ec2:DeleteTransitGatewayVpcAttachment",
    /**
     * Grants permission to delete a Verified Access endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVerifiedAccessEndpoint.html
     */
    DeleteVerifiedAccessEndpoint = "ec2:DeleteVerifiedAccessEndpoint",
    /**
     * Grants permission to delete a Verified Access group
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVerifiedAccessGroup.html
     */
    DeleteVerifiedAccessGroup = "ec2:DeleteVerifiedAccessGroup",
    /**
     * Grants permission to delete a Verified Access instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVerifiedAccessInstance.html
     */
    DeleteVerifiedAccessInstance = "ec2:DeleteVerifiedAccessInstance",
    /**
     * Grants permission to delete a verified trust provider
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVerifiedAccessTrustProvider.html
     */
    DeleteVerifiedAccessTrustProvider = "ec2:DeleteVerifiedAccessTrustProvider",
    /**
     * Grants permission to delete an EBS volume
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVolume.html
     */
    DeleteVolume = "ec2:DeleteVolume",
    /**
     * Grants permission to delete a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVpc.html
     */
    DeleteVpc = "ec2:DeleteVpc",
    /**
     * Grants permission to delete an exclusion list for blocked public access on a VP
     * C
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVpcBlockPublicAccessExclusion.html
     */
    DeleteVpcBlockPublicAccessExclusion = "ec2:DeleteVpcBlockPublicAccessExclusion",
    /**
     * Grants permission to delete one or more VPC endpoint connection notifications
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVpcEndpointConnectionNotifications.html
     */
    DeleteVpcEndpointConnectionNotifications = "ec2:DeleteVpcEndpointConnectionNotifications",
    /**
     * Grants permission to delete one or more VPC endpoint service configurations
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVpcEndpointServiceConfigurations.html
     */
    DeleteVpcEndpointServiceConfigurations = "ec2:DeleteVpcEndpointServiceConfigurations",
    /**
     * Grants permission to delete one or more VPC endpoints
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVpcEndpoints.html
     */
    DeleteVpcEndpoints = "ec2:DeleteVpcEndpoints",
    /**
     * Grants permission to delete a VPC peering connection
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVpcPeeringConnection.html
     */
    DeleteVpcPeeringConnection = "ec2:DeleteVpcPeeringConnection",
    /**
     * Grants permission to delete a VPN connection
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVpnConnection.html
     */
    DeleteVpnConnection = "ec2:DeleteVpnConnection",
    /**
     * Grants permission to delete a static route for a VPN connection between a virtu
     * al private gateway and a customer gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVpnConnectionRoute.html
     */
    DeleteVpnConnectionRoute = "ec2:DeleteVpnConnectionRoute",
    /**
     * Grants permission to delete a virtual private gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeleteVpnGateway.html
     */
    DeleteVpnGateway = "ec2:DeleteVpnGateway",
    /**
     * Grants permission to release an IP address range that was provisioned through b
     * ring your own IP addresses (BYOIP), and to delete the corresponding address poo
     * l
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeprovisionByoipCidr.html
     */
    DeprovisionByoipCidr = "ec2:DeprovisionByoipCidr",
    /**
     * Grants permission to deprovision an Autonomous System Number (ASN) from an Amaz
     * on Web Services account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeprovisionIpamByoasn.html
     */
    DeprovisionIpamByoasn = "ec2:DeprovisionIpamByoasn",
    /**
     * Grants permission to deprovision a CIDR provisioned from an Amazon VPC IP Addre
     * ss Manager (IPAM) pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeprovisionIpamPoolCidr.html
     */
    DeprovisionIpamPoolCidr = "ec2:DeprovisionIpamPoolCidr",
    /**
     * Grants permission to deprovision a CIDR from a public IPv4 pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeprovisionPublicIpv4PoolCidr.html
     */
    DeprovisionPublicIpv4PoolCidr = "ec2:DeprovisionPublicIpv4PoolCidr",
    /**
     * Grants permission to deregister an Amazon Machine Image (AMI)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeregisterImage.html
     */
    DeregisterImage = "ec2:DeregisterImage",
    /**
     * Grants permission to remove tags from the set of tags to include in notificatio
     * ns about scheduled events for your instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeregisterInstanceEventNotificationAttributes.html
     */
    DeregisterInstanceEventNotificationAttributes = "ec2:DeregisterInstanceEventNotificationAttributes",
    /**
     * Grants permission to deregister one or more network interface members from a gr
     * oup IP address in a transit gateway multicast domain
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeregisterTransitGatewayMulticastGroupMembers.html
     */
    DeregisterTransitGatewayMulticastGroupMembers = "ec2:DeregisterTransitGatewayMulticastGroupMembers",
    /**
     * Grants permission to deregister one or more network interface sources from a gr
     * oup IP address in a transit gateway multicast domain
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DeregisterTransitGatewayMulticastGroupSources.html
     */
    DeregisterTransitGatewayMulticastGroupSources = "ec2:DeregisterTransitGatewayMulticastGroupSources",
    /**
     * Grants permission to describe the attributes of the AWS account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeAccountAttributes.html
     */
    DescribeAccountAttributes = "ec2:DescribeAccountAttributes",
    /**
     * Grants permission to describe an Elastic IP address transfer
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeAddressTransfers.html
     */
    DescribeAddressTransfers = "ec2:DescribeAddressTransfers",
    /**
     * Grants permission to describe one or more Elastic IP addresses
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeAddresses.html
     */
    DescribeAddresses = "ec2:DescribeAddresses",
    /**
     * Grants permission to describe the attributes of the specified Elastic IP addres
     * ses
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeAddressesAttribute.html
     */
    DescribeAddressesAttribute = "ec2:DescribeAddressesAttribute",
    /**
     * Grants permission to describe the longer ID format settings for all resource ty
     * pes
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeAggregateIdFormat.html
     */
    DescribeAggregateIdFormat = "ec2:DescribeAggregateIdFormat",
    /**
     * Grants permission to describe one or more of the Availability Zones that are av
     * ailable to you
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeAvailabilityZones.html
     */
    DescribeAvailabilityZones = "ec2:DescribeAvailabilityZones",
    /**
     * Grants permission to describe the current infrastructure performance metric sub
     * scriptions
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeAwsNetworkPerformanceMetricSubscriptions.html
     */
    DescribeAwsNetworkPerformanceMetricSubscriptions = "ec2:DescribeAwsNetworkPerformanceMetricSubscriptions",
    /**
     * Grants permission to describe one or more bundling tasks
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeBundleTasks.html
     */
    DescribeBundleTasks = "ec2:DescribeBundleTasks",
    /**
     * Grants permission to describe the IP address ranges that were provisioned throu
     * gh bring your own IP addresses (BYOIP)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeByoipCidrs.html
     */
    DescribeByoipCidrs = "ec2:DescribeByoipCidrs",
    /**
     * Grants permission to describe Capacity Block extensions history
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeCapacityBlockExtensionHistory.html
     */
    DescribeCapacityBlockExtensionHistory = "ec2:DescribeCapacityBlockExtensionHistory",
    /**
     * Grants permission to describe Capacity Block extensions offerings
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeCapacityBlockExtensionOfferings.html
     */
    DescribeCapacityBlockExtensionOfferings = "ec2:DescribeCapacityBlockExtensionOfferings",
    /**
     * Grants permission to describe Capacity Block offerings available for purchase
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeCapacityBlockOfferings.html
     */
    DescribeCapacityBlockOfferings = "ec2:DescribeCapacityBlockOfferings",
    /**
     * Grants permission to describe one or more requests to assign the billing of the
     * unused capacity of a Capacity Reservation
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeCapacityReservationBillingRequests.html
     */
    DescribeCapacityReservationBillingRequests = "ec2:DescribeCapacityReservationBillingRequests",
    /**
     * Grants permission to describe one or more Capacity Reservation Fleets
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeCapacityReservationFleets.html
     */
    DescribeCapacityReservationFleets = "ec2:DescribeCapacityReservationFleets",
    /**
     * Grants permission to describe one or more Capacity Reservations
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeCapacityReservations.html
     */
    DescribeCapacityReservations = "ec2:DescribeCapacityReservations",
    /**
     * Grants permission to describe one or more Carrier Gateways
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeCarrierGateways.html
     */
    DescribeCarrierGateways = "ec2:DescribeCarrierGateways",
    /**
     * Grants permission to describe one or more linked EC2-Classic instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeClassicLinkInstances.html
     */
    DescribeClassicLinkInstances = "ec2:DescribeClassicLinkInstances",
    /**
     * Grants permission to describe the authorization rules for a Client VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeClientVpnAuthorizationRules.html
     */
    DescribeClientVpnAuthorizationRules = "ec2:DescribeClientVpnAuthorizationRules",
    /**
     * Grants permission to describe active client connections and connections that ha
     * ve been terminated within the last 60 minutes for a Client VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeClientVpnConnections.html
     */
    DescribeClientVpnConnections = "ec2:DescribeClientVpnConnections",
    /**
     * Grants permission to describe one or more Client VPN endpoints
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeClientVpnEndpoints.html
     */
    DescribeClientVpnEndpoints = "ec2:DescribeClientVpnEndpoints",
    /**
     * Grants permission to describe the routes for a Client VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeClientVpnRoutes.html
     */
    DescribeClientVpnRoutes = "ec2:DescribeClientVpnRoutes",
    /**
     * Grants permission to describe the target networks that are associated with a Cl
     * ient VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeClientVpnTargetNetworks.html
     */
    DescribeClientVpnTargetNetworks = "ec2:DescribeClientVpnTargetNetworks",
    /**
     * Grants permission to describe the specified customer-owned address pools or all
     * of your customer-owned address pools
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeCoipPools.html
     */
    DescribeCoipPools = "ec2:DescribeCoipPools",
    /**
     * Grants permission to describe one or more conversion tasks
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeConversionTasks.html
     */
    DescribeConversionTasks = "ec2:DescribeConversionTasks",
    /**
     * Grants permission to describe one or more customer gateways
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeCustomerGateways.html
     */
    DescribeCustomerGateways = "ec2:DescribeCustomerGateways",
    /**
     * Grants permission to describe one or more declarative policies reports
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeDeclarativePoliciesReports.html
     */
    DescribeDeclarativePoliciesReports = "ec2:DescribeDeclarativePoliciesReports",
    /**
     * Grants permission to describe one or more DHCP options sets
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeDhcpOptions.html
     */
    DescribeDhcpOptions = "ec2:DescribeDhcpOptions",
    /**
     * Grants permission to describe one or more egress-only internet gateways
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeEgressOnlyInternetGateways.html
     */
    DescribeEgressOnlyInternetGateways = "ec2:DescribeEgressOnlyInternetGateways",
    /**
     * Grants permission to describe an Elastic Graphics accelerator that is associate
     * d with an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeElasticGpus.html
     */
    DescribeElasticGpus = "ec2:DescribeElasticGpus",
    /**
     * Grants permission to describe one or more export image tasks
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeExportImageTasks.html
     */
    DescribeExportImageTasks = "ec2:DescribeExportImageTasks",
    /**
     * Grants permission to describe one or more export instance tasks
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeExportTasks.html
     */
    DescribeExportTasks = "ec2:DescribeExportTasks",
    /**
     * Grants permission to describe fast-launch enabled Windows AMIs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeFastLaunchImages.html
     */
    DescribeFastLaunchImages = "ec2:DescribeFastLaunchImages",
    /**
     * Grants permission to describe the state of fast snapshot restores for snapshots
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeFastSnapshotRestores.html
     */
    DescribeFastSnapshotRestores = "ec2:DescribeFastSnapshotRestores",
    /**
     * Grants permission to describe the events for an EC2 Fleet during a specified ti
     * me
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeFleetHistory.html
     */
    DescribeFleetHistory = "ec2:DescribeFleetHistory",
    /**
     * Grants permission to describe the running instances for an EC2 Fleet
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeFleetInstances.html
     */
    DescribeFleetInstances = "ec2:DescribeFleetInstances",
    /**
     * Grants permission to describe one or more EC2 Fleets
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeFleets.html
     */
    DescribeFleets = "ec2:DescribeFleets",
    /**
     * Grants permission to describe one or more flow logs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeFlowLogs.html
     */
    DescribeFlowLogs = "ec2:DescribeFlowLogs",
    /**
     * Grants permission to describe the attributes of an Amazon FPGA Image (AFI)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeFpgaImageAttribute.html
     */
    DescribeFpgaImageAttribute = "ec2:DescribeFpgaImageAttribute",
    /**
     * Grants permission to describe one or more Amazon FPGA Images (AFIs)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeFpgaImages.html
     */
    DescribeFpgaImages = "ec2:DescribeFpgaImages",
    /**
     * Grants permission to describe the Dedicated Host Reservations that are availabl
     * e to purchase
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeHostReservationOfferings.html
     */
    DescribeHostReservationOfferings = "ec2:DescribeHostReservationOfferings",
    /**
     * Grants permission to describe the Dedicated Host Reservations that are associat
     * ed with Dedicated Hosts in the AWS account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeHostReservations.html
     */
    DescribeHostReservations = "ec2:DescribeHostReservations",
    /**
     * Grants permission to describe one or more Dedicated Hosts
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeHosts.html
     */
    DescribeHosts = "ec2:DescribeHosts",
    /**
     * Grants permission to describe the IAM instance profile associations
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeIamInstanceProfileAssociations.html
     */
    DescribeIamInstanceProfileAssociations = "ec2:DescribeIamInstanceProfileAssociations",
    /**
     * Grants permission to describe the ID format settings for resources
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeIdFormat.html
     */
    DescribeIdFormat = "ec2:DescribeIdFormat",
    /**
     * Grants permission to describe the ID format settings for resources for an IAM u
     * ser, IAM role, or root user
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeIdentityIdFormat.html
     */
    DescribeIdentityIdFormat = "ec2:DescribeIdentityIdFormat",
    /**
     * Grants permission to describe an attribute of an Amazon Machine Image (AMI)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeImageAttribute.html
     */
    DescribeImageAttribute = "ec2:DescribeImageAttribute",
    /**
     * Grants permission to describe one or more images (AMIs, AKIs, and ARIs)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeImages.html
     */
    DescribeImages = "ec2:DescribeImages",
    /**
     * Grants permission to describe import virtual machine or import snapshot tasks
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeImportImageTasks.html
     */
    DescribeImportImageTasks = "ec2:DescribeImportImageTasks",
    /**
     * Grants permission to describe import snapshot tasks
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeImportSnapshotTasks.html
     */
    DescribeImportSnapshotTasks = "ec2:DescribeImportSnapshotTasks",
    /**
     * Grants permission to describe the attributes of an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeInstanceAttribute.html
     */
    DescribeInstanceAttribute = "ec2:DescribeInstanceAttribute",
    /**
     * Grants permission to describe EC2 Instance Connect Endpoints
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeInstanceConnectEndpoints.html
     */
    DescribeInstanceConnectEndpoints = "ec2:DescribeInstanceConnectEndpoints",
    /**
     * Grants permission to describe the credit option for CPU usage of one or more bu
     * rstable performance instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeInstanceCreditSpecifications.html
     */
    DescribeInstanceCreditSpecifications = "ec2:DescribeInstanceCreditSpecifications",
    /**
     * Grants permission to describe the set of tags to include in notifications about
     * scheduled events for your instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeInstanceEventNotificationAttributes.html
     */
    DescribeInstanceEventNotificationAttributes = "ec2:DescribeInstanceEventNotificationAttributes",
    /**
     * Grants permission to describe the specified event windows or all event windows
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeInstanceEventWindows.html
     */
    DescribeInstanceEventWindows = "ec2:DescribeInstanceEventWindows",
    /**
     * Grants permission to describe the AMI that was used to launch an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeInstanceImageMetadata.html
     */
    DescribeInstanceImageMetadata = "ec2:DescribeInstanceImageMetadata",
    /**
     * Grants permission to describe the status of one or more instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeInstanceStatus.html
     */
    DescribeInstanceStatus = "ec2:DescribeInstanceStatus",
    /**
     * Grants permission to describe a tree-based hierarchy that represents the physic
     * al host placement of EC2 instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeInstanceTopology.html
     */
    DescribeInstanceTopology = "ec2:DescribeInstanceTopology",
    /**
     * Grants permission to describe the set of instance types that are offered in a l
     * ocation
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeInstanceTypeOfferings.html
     */
    DescribeInstanceTypeOfferings = "ec2:DescribeInstanceTypeOfferings",
    /**
     * Grants permission to describe the details of instance types that are offered in
     * a location
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeInstanceTypes.html
     */
    DescribeInstanceTypes = "ec2:DescribeInstanceTypes",
    /**
     * Grants permission to describe one or more instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeInstances.html
     */
    DescribeInstances = "ec2:DescribeInstances",
    /**
     * Grants permission to describe one or more internet gateways
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeInternetGateways.html
     */
    DescribeInternetGateways = "ec2:DescribeInternetGateways",
    /**
     * Grants permission to describe a bring your own Autonomous System Number (BYOASN
     * ) that you've brought to IPAM
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeIpamByoasn.html
     */
    DescribeIpamByoasn = "ec2:DescribeIpamByoasn",
    /**
     * Grants permission to describe verification tokens, which proves ownership of an
     * external resource
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeIpamExternalResourceVerificationTokens.html
     */
    DescribeIpamExternalResourceVerificationTokens = "ec2:DescribeIpamExternalResourceVerificationTokens",
    /**
     * Grants permission to describe Amazon VPC IP Address Manager (IPAM) pools
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeIpamPools.html
     */
    DescribeIpamPools = "ec2:DescribeIpamPools",
    /**
     * Grants permission to describe IPAM resource discoveries
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeIpamResourceDiscoveries.html
     */
    DescribeIpamResourceDiscoveries = "ec2:DescribeIpamResourceDiscoveries",
    /**
     * Grants permission to describe resource discovery associations with an Amazon VP
     * C IPAM
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeIpamResourceDiscoveryAssociations.html
     */
    DescribeIpamResourceDiscoveryAssociations = "ec2:DescribeIpamResourceDiscoveryAssociations",
    /**
     * Grants permission to describe Amazon VPC IP Address Manager (IPAM) scopes
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeIpamScopes.html
     */
    DescribeIpamScopes = "ec2:DescribeIpamScopes",
    /**
     * Grants permission to describe an Amazon VPC IP Address Manager (IPAM)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeIpams.html
     */
    DescribeIpams = "ec2:DescribeIpams",
    /**
     * Grants permission to describe one or more IPv6 address pools
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeIpv6Pools.html
     */
    DescribeIpv6Pools = "ec2:DescribeIpv6Pools",
    /**
     * Grants permission to describe one or more key pairs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeKeyPairs.html
     */
    DescribeKeyPairs = "ec2:DescribeKeyPairs",
    /**
     * Grants permission to describe one or more launch template versions
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeLaunchTemplateVersions.html
     */
    DescribeLaunchTemplateVersions = "ec2:DescribeLaunchTemplateVersions",
    /**
     * Grants permission to describe one or more launch templates
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeLaunchTemplates.html
     */
    DescribeLaunchTemplates = "ec2:DescribeLaunchTemplates",
    /**
     * Grants permission to allow a service to describe local gateway route table perm
     * issions
     *
     * See https://docs.aws.amazon.com/outposts/latest/userguide/identity-access-management.html
     */
    DescribeLocalGatewayRouteTablePermissions = "ec2:DescribeLocalGatewayRouteTablePermissions",
    /**
     * Grants permission to describe the associations between virtual interface groups
     * and local gateway route tables
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeLocalGatewayRouteTableVirtualInterfaceGroupAssociations.html
     */
    DescribeLocalGatewayRouteTableVirtualInterfaceGroupAssociations = "ec2:DescribeLocalGatewayRouteTableVirtualInterfaceGroupAssociations",
    /**
     * Grants permission to describe an association between VPCs and local gateway rou
     * te tables
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeLocalGatewayRouteTableVpcAssociations.html
     */
    DescribeLocalGatewayRouteTableVpcAssociations = "ec2:DescribeLocalGatewayRouteTableVpcAssociations",
    /**
     * Grants permission to describe one or more local gateway route tables
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeLocalGatewayRouteTables.html
     */
    DescribeLocalGatewayRouteTables = "ec2:DescribeLocalGatewayRouteTables",
    /**
     * Grants permission to describe local gateway virtual interface groups
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeLocalGatewayVirtualInterfaceGroups.html
     */
    DescribeLocalGatewayVirtualInterfaceGroups = "ec2:DescribeLocalGatewayVirtualInterfaceGroups",
    /**
     * Grants permission to describe local gateway virtual interfaces
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeLocalGatewayVirtualInterfaces.html
     */
    DescribeLocalGatewayVirtualInterfaces = "ec2:DescribeLocalGatewayVirtualInterfaces",
    /**
     * Grants permission to describe one or more local gateways
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeLocalGateways.html
     */
    DescribeLocalGateways = "ec2:DescribeLocalGateways",
    /**
     * Grants permission to describe the lock status for a snapshot
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeLockedSnapshots.html
     */
    DescribeLockedSnapshots = "ec2:DescribeLockedSnapshots",
    /**
     * Grants permission to describe your EC2 Mac Dedicated hosts
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeMacHosts.html
     */
    DescribeMacHosts = "ec2:DescribeMacHosts",
    /**
     * Grants permission to describe your managed prefix lists and any AWS-managed pre
     * fix lists
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeManagedPrefixLists.html
     */
    DescribeManagedPrefixLists = "ec2:DescribeManagedPrefixLists",
    /**
     * Grants permission to describe Elastic IP addresses that are being moved to the
     * EC2-VPC platform
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeMovingAddresses.html
     */
    DescribeMovingAddresses = "ec2:DescribeMovingAddresses",
    /**
     * Grants permission to describe one or more NAT gateways
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeNatGateways.html
     */
    DescribeNatGateways = "ec2:DescribeNatGateways",
    /**
     * Grants permission to describe one or more network ACLs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeNetworkAcls.html
     */
    DescribeNetworkAcls = "ec2:DescribeNetworkAcls",
    /**
     * Grants permission to describe one or more Network Access Scope analyses
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeNetworkInsightsAccessScopeAnalyses.html
     */
    DescribeNetworkInsightsAccessScopeAnalyses = "ec2:DescribeNetworkInsightsAccessScopeAnalyses",
    /**
     * Grants permission to describe the Network Access Scopes
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeNetworkInsightsAccessScopes.html
     */
    DescribeNetworkInsightsAccessScopes = "ec2:DescribeNetworkInsightsAccessScopes",
    /**
     * Grants permission to describe one or more network insights analyses
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeNetworkInsightsAnalyses.html
     */
    DescribeNetworkInsightsAnalyses = "ec2:DescribeNetworkInsightsAnalyses",
    /**
     * Grants permission to describe one or more network insights paths
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeNetworkInsightsPaths.html
     */
    DescribeNetworkInsightsPaths = "ec2:DescribeNetworkInsightsPaths",
    /**
     * Grants permission to describe a network interface attribute
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeNetworkInterfaceAttribute.html
     */
    DescribeNetworkInterfaceAttribute = "ec2:DescribeNetworkInterfaceAttribute",
    /**
     * Grants permission to describe the permissions that are associated with a networ
     * k interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeNetworkInterfacePermissions.html
     */
    DescribeNetworkInterfacePermissions = "ec2:DescribeNetworkInterfacePermissions",
    /**
     * Grants permission to describe one or more network interfaces
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeNetworkInterfaces.html
     */
    DescribeNetworkInterfaces = "ec2:DescribeNetworkInterfaces",
    /**
     * Grants permission to describe one or more placement groups
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribePlacementGroups.html
     */
    DescribePlacementGroups = "ec2:DescribePlacementGroups",
    /**
     * Grants permission to describe available AWS services in a prefix list format
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribePrefixLists.html
     */
    DescribePrefixLists = "ec2:DescribePrefixLists",
    /**
     * Grants permission to describe the ID format settings for the root user and all
     * IAM roles and IAM users that have explicitly specified a longer ID (17-characte
     * r ID) preference
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribePrincipalIdFormat.html
     */
    DescribePrincipalIdFormat = "ec2:DescribePrincipalIdFormat",
    /**
     * Grants permission to describe one or more IPv4 address pools
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribePublicIpv4Pools.html
     */
    DescribePublicIpv4Pools = "ec2:DescribePublicIpv4Pools",
    /**
     * Grants permission to describe one or more AWS Regions that are currently availa
     * ble in your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeRegions.html
     */
    DescribeRegions = "ec2:DescribeRegions",
    /**
     * Grants permission to describe a root volume replacement task
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeReplaceRootVolumeTasks.html
     */
    DescribeReplaceRootVolumeTasks = "ec2:DescribeReplaceRootVolumeTasks",
    /**
     * Grants permission to describe one or more purchased Reserved Instances in your
     * account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeReservedInstances.html
     */
    DescribeReservedInstances = "ec2:DescribeReservedInstances",
    /**
     * Grants permission to describe your account's Reserved Instance listings in the
     * Reserved Instance Marketplace
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeReservedInstancesListings.html
     */
    DescribeReservedInstancesListings = "ec2:DescribeReservedInstancesListings",
    /**
     * Grants permission to describe the modifications made to one or more Reserved In
     * stances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeReservedInstancesModifications.html
     */
    DescribeReservedInstancesModifications = "ec2:DescribeReservedInstancesModifications",
    /**
     * Grants permission to describe the Reserved Instance offerings that are availabl
     * e for purchase
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeReservedInstancesOfferings.html
     */
    DescribeReservedInstancesOfferings = "ec2:DescribeReservedInstancesOfferings",
    /**
     * Grants permission to describe one or more route tables
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeRouteTables.html
     */
    DescribeRouteTables = "ec2:DescribeRouteTables",
    /**
     * Grants permission to find available schedules for Scheduled Instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeScheduledInstanceAvailability.html
     */
    DescribeScheduledInstanceAvailability = "ec2:DescribeScheduledInstanceAvailability",
    /**
     * Grants permission to describe one or more Scheduled Instances in your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeScheduledInstances.html
     */
    DescribeScheduledInstances = "ec2:DescribeScheduledInstances",
    /**
     * Grants permission to describe the VPCs on the other side of a VPC peering conne
     * ction that are referencing specified VPC security groups
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSecurityGroupReferences.html
     */
    DescribeSecurityGroupReferences = "ec2:DescribeSecurityGroupReferences",
    /**
     * Grants permission to describe one or more of your security group rules
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSecurityGroupRules.html
     */
    DescribeSecurityGroupRules = "ec2:DescribeSecurityGroupRules",
    /**
     * Grants permission to describe security group VPC associations
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSecurityGroupVpcAssociations.html
     */
    DescribeSecurityGroupVpcAssociations = "ec2:DescribeSecurityGroupVpcAssociations",
    /**
     * Grants permission to describe one or more security groups
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSecurityGroups.html
     */
    DescribeSecurityGroups = "ec2:DescribeSecurityGroups",
    /**
     * Grants permission to describe an attribute of a snapshot
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSnapshotAttribute.html
     */
    DescribeSnapshotAttribute = "ec2:DescribeSnapshotAttribute",
    /**
     * Grants permission to describe the storage tier status for Amazon EBS snapshots
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSnapshotTierStatus.html
     */
    DescribeSnapshotTierStatus = "ec2:DescribeSnapshotTierStatus",
    /**
     * Grants permission to describe one or more EBS snapshots
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSnapshots.html
     */
    DescribeSnapshots = "ec2:DescribeSnapshots",
    /**
     * Grants permission to describe the data feed for Spot Instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSpotDatafeedSubscription.html
     */
    DescribeSpotDatafeedSubscription = "ec2:DescribeSpotDatafeedSubscription",
    /**
     * Grants permission to describe the running instances for a Spot Fleet
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSpotFleetInstances.html
     */
    DescribeSpotFleetInstances = "ec2:DescribeSpotFleetInstances",
    /**
     * Grants permission to describe the events for a Spot Fleet request during a spec
     * ified time
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSpotFleetRequestHistory.html
     */
    DescribeSpotFleetRequestHistory = "ec2:DescribeSpotFleetRequestHistory",
    /**
     * Grants permission to describe one or more Spot Fleet requests
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSpotFleetRequests.html
     */
    DescribeSpotFleetRequests = "ec2:DescribeSpotFleetRequests",
    /**
     * Grants permission to describe one or more Spot Instance requests
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSpotInstanceRequests.html
     */
    DescribeSpotInstanceRequests = "ec2:DescribeSpotInstanceRequests",
    /**
     * Grants permission to describe the Spot Instance price history
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSpotPriceHistory.html
     */
    DescribeSpotPriceHistory = "ec2:DescribeSpotPriceHistory",
    /**
     * Grants permission to describe the stale security group rules for security group
     * s in a specified VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeStaleSecurityGroups.html
     */
    DescribeStaleSecurityGroups = "ec2:DescribeStaleSecurityGroups",
    /**
     * Grants permission to describe the progress of the AMI store tasks
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeStoreImageTasks.html
     */
    DescribeStoreImageTasks = "ec2:DescribeStoreImageTasks",
    /**
     * Grants permission to describe one or more subnets
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeSubnets.html
     */
    DescribeSubnets = "ec2:DescribeSubnets",
    /**
     * Grants permission to describe one or more tags for an Amazon EC2 resource
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTags.html
     */
    DescribeTags = "ec2:DescribeTags",
    /**
     * Grants permission to describe traffic mirror filters that determine the traffic
     * that is mirrored
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTrafficMirrorFilterRules.html
     */
    DescribeTrafficMirrorFilterRules = "ec2:DescribeTrafficMirrorFilterRules",
    /**
     * Grants permission to describe one or more traffic mirror filters
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTrafficMirrorFilters.html
     */
    DescribeTrafficMirrorFilters = "ec2:DescribeTrafficMirrorFilters",
    /**
     * Grants permission to describe one or more traffic mirror sessions
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTrafficMirrorSessions.html
     */
    DescribeTrafficMirrorSessions = "ec2:DescribeTrafficMirrorSessions",
    /**
     * Grants permission to describe one or more traffic mirror targets
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTrafficMirrorTargets.html
     */
    DescribeTrafficMirrorTargets = "ec2:DescribeTrafficMirrorTargets",
    /**
     * Grants permission to describe one or more attachments between resources and tra
     * nsit gateways
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTransitGatewayAttachments.html
     */
    DescribeTransitGatewayAttachments = "ec2:DescribeTransitGatewayAttachments",
    /**
     * Grants permission to describe one or more transit gateway connect peers
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTransitGatewayConnectPeers.html
     */
    DescribeTransitGatewayConnectPeers = "ec2:DescribeTransitGatewayConnectPeers",
    /**
     * Grants permission to describe one or more transit gateway connect attachments
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTransitGatewayConnects.html
     */
    DescribeTransitGatewayConnects = "ec2:DescribeTransitGatewayConnects",
    /**
     * Grants permission to describe one or more transit gateway multicast domains
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTransitGatewayMulticastDomains.html
     */
    DescribeTransitGatewayMulticastDomains = "ec2:DescribeTransitGatewayMulticastDomains",
    /**
     * Grants permission to describe one or more transit gateway peering attachments
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTransitGatewayPeeringAttachments.html
     */
    DescribeTransitGatewayPeeringAttachments = "ec2:DescribeTransitGatewayPeeringAttachments",
    /**
     * Grants permission to describe a transit gateway policy table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTransitGatewayPolicyTables.html
     */
    DescribeTransitGatewayPolicyTables = "ec2:DescribeTransitGatewayPolicyTables",
    /**
     * Grants permission to describe a transit gateway route table announcement
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTransitGatewayRouteTableAnnouncements.html
     */
    DescribeTransitGatewayRouteTableAnnouncements = "ec2:DescribeTransitGatewayRouteTableAnnouncements",
    /**
     * Grants permission to describe one or more transit gateway route tables
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTransitGatewayRouteTables.html
     */
    DescribeTransitGatewayRouteTables = "ec2:DescribeTransitGatewayRouteTables",
    /**
     * Grants permission to describe one or more VPC attachments on a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTransitGatewayVpcAttachments.html
     */
    DescribeTransitGatewayVpcAttachments = "ec2:DescribeTransitGatewayVpcAttachments",
    /**
     * Grants permission to describe one or more transit gateways
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTransitGateways.html
     */
    DescribeTransitGateways = "ec2:DescribeTransitGateways",
    /**
     * Grants permission to describe one or more network interface trunk associations
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeTrunkInterfaceAssociations.html
     */
    DescribeTrunkInterfaceAssociations = "ec2:DescribeTrunkInterfaceAssociations",
    /**
     * Grants permission to describe the specified Verified Access endpoints or all Ve
     * rified Access endpoints
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVerifiedAccessEndpoints.html
     */
    DescribeVerifiedAccessEndpoints = "ec2:DescribeVerifiedAccessEndpoints",
    /**
     * Grants permission to describe the specified Verified Access groups or all Verif
     * ied Access groups
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVerifiedAccessGroups.html
     */
    DescribeVerifiedAccessGroups = "ec2:DescribeVerifiedAccessGroups",
    /**
     * Grants permission to describe the current logging configuration for the Verifie
     * d Access instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVerifiedAccessInstanceLoggingConfigurations.html
     */
    DescribeVerifiedAccessInstanceLoggingConfigurations = "ec2:DescribeVerifiedAccessInstanceLoggingConfigurations",
    /**
     * Grants permission to describe the AWS Web Application Firewall (WAF) web access
     * control list (ACL) associations for a Verified Access instance
     *
     * See https://docs.aws.amazon.com/verified-access/latest/ug/waf-integration.html
     */
    DescribeVerifiedAccessInstanceWebAclAssociations = "ec2:DescribeVerifiedAccessInstanceWebAclAssociations",
    /**
     * Grants permission to describe the specified Verified Access instances or all Ve
     * rified Access instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVerifiedAccessInstances.html
     */
    DescribeVerifiedAccessInstances = "ec2:DescribeVerifiedAccessInstances",
    /**
     * Grants permission to describe details of existing Verified Access trust provide
     * rs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVerifiedAccessTrustProviders.html
     */
    DescribeVerifiedAccessTrustProviders = "ec2:DescribeVerifiedAccessTrustProviders",
    /**
     * Grants permission to describe an attribute of an EBS volume
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVolumeAttribute.html
     */
    DescribeVolumeAttribute = "ec2:DescribeVolumeAttribute",
    /**
     * Grants permission to describe the status of one or more EBS volumes
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVolumeStatus.html
     */
    DescribeVolumeStatus = "ec2:DescribeVolumeStatus",
    /**
     * Grants permission to describe one or more EBS volumes
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVolumes.html
     */
    DescribeVolumes = "ec2:DescribeVolumes",
    /**
     * Grants permission to describe the current modification status of one or more EB
     * S volumes
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVolumesModifications.html
     */
    DescribeVolumesModifications = "ec2:DescribeVolumesModifications",
    /**
     * Grants permission to describe an attribute of a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcAttribute.html
     */
    DescribeVpcAttribute = "ec2:DescribeVpcAttribute",
    /**
     * Grants permission to describe an exclusion list for blocked public access on a
     * VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcBlockPublicAccessExclusions.html
     */
    DescribeVpcBlockPublicAccessExclusions = "ec2:DescribeVpcBlockPublicAccessExclusions",
    /**
     * Grants permission to describe options for blocked public access on a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcBlockPublicAccessOptions.html
     */
    DescribeVpcBlockPublicAccessOptions = "ec2:DescribeVpcBlockPublicAccessOptions",
    /**
     * Grants permission to describe the ClassicLink status of one or more VPCs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcClassicLink.html
     */
    DescribeVpcClassicLink = "ec2:DescribeVpcClassicLink",
    /**
     * Grants permission to describe the ClassicLink DNS support status of one or more
     * VPCs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcClassicLinkDnsSupport.html
     */
    DescribeVpcClassicLinkDnsSupport = "ec2:DescribeVpcClassicLinkDnsSupport",
    /**
     * Grants permission to describe the VPC endpoint associations
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcEndpointAssociations.html
     */
    DescribeVpcEndpointAssociations = "ec2:DescribeVpcEndpointAssociations",
    /**
     * Grants permission to describe the connection notifications for VPC endpoints an
     * d VPC endpoint services
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcEndpointConnectionNotifications.html
     */
    DescribeVpcEndpointConnectionNotifications = "ec2:DescribeVpcEndpointConnectionNotifications",
    /**
     * Grants permission to describe the VPC endpoint connections to your VPC endpoint
     * services
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcEndpointConnections.html
     */
    DescribeVpcEndpointConnections = "ec2:DescribeVpcEndpointConnections",
    /**
     * Grants permission to describe VPC endpoint service configurations (your service
     * s)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcEndpointServiceConfigurations.html
     */
    DescribeVpcEndpointServiceConfigurations = "ec2:DescribeVpcEndpointServiceConfigurations",
    /**
     * Grants permission to describe the principals (service consumers) that are permi
     * tted to discover your VPC endpoint service
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcEndpointServicePermissions.html
     */
    DescribeVpcEndpointServicePermissions = "ec2:DescribeVpcEndpointServicePermissions",
    /**
     * Grants permission to describe all supported AWS services that can be specified
     * when creating a VPC endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcEndpointServices.html
     */
    DescribeVpcEndpointServices = "ec2:DescribeVpcEndpointServices",
    /**
     * Grants permission to describe one or more VPC endpoints
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcEndpoints.html
     */
    DescribeVpcEndpoints = "ec2:DescribeVpcEndpoints",
    /**
     * Grants permission to describe one or more VPC peering connections
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcPeeringConnections.html
     */
    DescribeVpcPeeringConnections = "ec2:DescribeVpcPeeringConnections",
    /**
     * Grants permission to describe one or more VPCs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpcs.html
     */
    DescribeVpcs = "ec2:DescribeVpcs",
    /**
     * Grants permission to describe one or more VPN connections
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpnConnections.html
     */
    DescribeVpnConnections = "ec2:DescribeVpnConnections",
    /**
     * Grants permission to describe one or more virtual private gateways
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DescribeVpnGateways.html
     */
    DescribeVpnGateways = "ec2:DescribeVpnGateways",
    /**
     * Grants permission to unlink (detach) a linked EC2-Classic instance from a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DetachClassicLinkVpc.html
     */
    DetachClassicLinkVpc = "ec2:DetachClassicLinkVpc",
    /**
     * Grants permission to detach an internet gateway from a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DetachInternetGateway.html
     */
    DetachInternetGateway = "ec2:DetachInternetGateway",
    /**
     * Grants permission to detach a network interface from an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DetachNetworkInterface.html
     */
    DetachNetworkInterface = "ec2:DetachNetworkInterface",
    /**
     * Grants permission to detach a trust provider from a Verified Access instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DetachVerifiedAccessTrustProvider.html
     */
    DetachVerifiedAccessTrustProvider = "ec2:DetachVerifiedAccessTrustProvider",
    /**
     * Grants permission to detach an EBS volume from an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DetachVolume.html
     */
    DetachVolume = "ec2:DetachVolume",
    /**
     * Grants permission to detach a virtual private gateway from a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DetachVpnGateway.html
     */
    DetachVpnGateway = "ec2:DetachVpnGateway",
    /**
     * Grants permission to disable Elastic IP address transfer
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableAddressTransfer.html
     */
    DisableAddressTransfer = "ec2:DisableAddressTransfer",
    /**
     * Grants permission to disable allowed images settings
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableAllowedImagesSettings.html
     */
    DisableAllowedImagesSettings = "ec2:DisableAllowedImagesSettings",
    /**
     * Grants permission to disable infrastructure performance metric subscriptions
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableAwsNetworkPerformanceMetricSubscription.html
     */
    DisableAwsNetworkPerformanceMetricSubscription = "ec2:DisableAwsNetworkPerformanceMetricSubscription",
    /**
     * Grants permission to disable EBS encryption by default for your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableEbsEncryptionByDefault.html
     */
    DisableEbsEncryptionByDefault = "ec2:DisableEbsEncryptionByDefault",
    /**
     * Grants permission to disable faster launching for Windows AMIs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableFastLaunch.html
     */
    DisableFastLaunch = "ec2:DisableFastLaunch",
    /**
     * Grants permission to disable fast snapshot restores for one or more snapshots i
     * n specified Availability Zones
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableFastSnapshotRestores.html
     */
    DisableFastSnapshotRestores = "ec2:DisableFastSnapshotRestores",
    /**
     * Grants permission to disable an AMI
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableImage.html
     */
    DisableImage = "ec2:DisableImage",
    /**
     * Grants permission to disable block public access for AMIs at the account level
     * in the specified AWS Region
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableImageBlockPublicAccess.html
     */
    DisableImageBlockPublicAccess = "ec2:DisableImageBlockPublicAccess",
    /**
     * Grants permission to cancel the deprecation of the specified AMI
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableImageDeprecation.html
     */
    DisableImageDeprecation = "ec2:DisableImageDeprecation",
    /**
     * Grants permission to disable deregistration protection for an AMI. When deregis
     * tration protection is disabled, the AMI can be deregistered
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableImageDeregistrationProtection.html
     */
    DisableImageDeregistrationProtection = "ec2:DisableImageDeregistrationProtection",
    /**
     * Grants permission to disable an AWS Organizations member account as an Amazon V
     * PC IP Address Manager (IPAM) admin account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableIpamOrganizationAdminAccount.html
     */
    DisableIpamOrganizationAdminAccount = "ec2:DisableIpamOrganizationAdminAccount",
    /**
     * Grants permission to disable access to the EC2 serial console of all instances
     * for your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableSerialConsoleAccess.html
     */
    DisableSerialConsoleAccess = "ec2:DisableSerialConsoleAccess",
    /**
     * Grants permission to disable the block public access for snapshots setting for
     * a Region
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableSnapshotBlockPublicAccess.html
     */
    DisableSnapshotBlockPublicAccess = "ec2:DisableSnapshotBlockPublicAccess",
    /**
     * Grants permission to disable a resource attachment from propagating routes to t
     * he specified propagation route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableTransitGatewayRouteTablePropagation.html
     */
    DisableTransitGatewayRouteTablePropagation = "ec2:DisableTransitGatewayRouteTablePropagation",
    /**
     * Grants permission to disable a virtual private gateway from propagating routes
     * to a specified route table of a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableVgwRoutePropagation.html
     */
    DisableVgwRoutePropagation = "ec2:DisableVgwRoutePropagation",
    /**
     * Grants permission to disable ClassicLink for a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableVpcClassicLink.html
     */
    DisableVpcClassicLink = "ec2:DisableVpcClassicLink",
    /**
     * Grants permission to disable ClassicLink DNS support for a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisableVpcClassicLinkDnsSupport.html
     */
    DisableVpcClassicLinkDnsSupport = "ec2:DisableVpcClassicLinkDnsSupport",
    /**
     * Grants permission to disassociate an Elastic IP address from an instance or net
     * work interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateAddress.html
     */
    DisassociateAddress = "ec2:DisassociateAddress",
    /**
     * Grants permission to cancel a pending request to assign billing of the unused c
     * apacity of a Capacity Reservation to a consumer account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateCapacityReservationBillingOwner.html
     */
    DisassociateCapacityReservationBillingOwner = "ec2:DisassociateCapacityReservationBillingOwner",
    /**
     * Grants permission to disassociate a target network from a Client VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateClientVpnTargetNetwork.html
     */
    DisassociateClientVpnTargetNetwork = "ec2:DisassociateClientVpnTargetNetwork",
    /**
     * Grants permission to disassociate an ACM certificate from a IAM role
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateEnclaveCertificateIamRole.html
     */
    DisassociateEnclaveCertificateIamRole = "ec2:DisassociateEnclaveCertificateIamRole",
    /**
     * Grants permission to disassociate an IAM instance profile from a running or sto
     * pped instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateIamInstanceProfile.html
     */
    DisassociateIamInstanceProfile = "ec2:DisassociateIamInstanceProfile",
    /**
     * Grants permission to disassociate one or more targets from an event window
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateInstanceEventWindow.html
     */
    DisassociateInstanceEventWindow = "ec2:DisassociateInstanceEventWindow",
    /**
     * Grants permission to disassociate an Autonomous System Number (ASN) from a BYOI
     * P CIDR
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateIpamByoasn.html
     */
    DisassociateIpamByoasn = "ec2:DisassociateIpamByoasn",
    /**
     * Grants permission to disassociate a resource discovery from an Amazon VPC IPAM
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateIpamResourceDiscovery.html
     */
    DisassociateIpamResourceDiscovery = "ec2:DisassociateIpamResourceDiscovery",
    /**
     * Grants permission to disassociate a secondary Elastic IP address from a public
     * NAT gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateNatGatewayAddress.html
     */
    DisassociateNatGatewayAddress = "ec2:DisassociateNatGatewayAddress",
    /**
     * Grants permission to disassociate a subnet from a route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateRouteTable.html
     */
    DisassociateRouteTable = "ec2:DisassociateRouteTable",
    /**
     * Grants permission to disassociate a security group from a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateSecurityGroupVpc.html
     */
    DisassociateSecurityGroupVpc = "ec2:DisassociateSecurityGroupVpc",
    /**
     * Grants permission to disassociate a CIDR block from a subnet
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateSubnetCidrBlock.html
     */
    DisassociateSubnetCidrBlock = "ec2:DisassociateSubnetCidrBlock",
    /**
     * Grants permission to disassociate one or more subnets from a transit gateway mu
     * lticast domain
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateTransitGatewayMulticastDomain.html
     */
    DisassociateTransitGatewayMulticastDomain = "ec2:DisassociateTransitGatewayMulticastDomain",
    /**
     * Grants permission to disassociate a policy table from a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateTransitGatewayPolicyTable.html
     */
    DisassociateTransitGatewayPolicyTable = "ec2:DisassociateTransitGatewayPolicyTable",
    /**
     * Grants permission to disassociate a resource attachment from a transit gateway
     * route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateTransitGatewayRouteTable.html
     */
    DisassociateTransitGatewayRouteTable = "ec2:DisassociateTransitGatewayRouteTable",
    /**
     * Grants permission to disassociate a branch network interface to a trunk network
     * interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateTrunkInterface.html
     */
    DisassociateTrunkInterface = "ec2:DisassociateTrunkInterface",
    /**
     * Grants permission to disassociate an AWS Web Application Firewall (WAF) web acc
     * ess control list (ACL) from a Verified Access instance
     *
     * See https://docs.aws.amazon.com/verified-access/latest/ug/waf-integration.html
     */
    DisassociateVerifiedAccessInstanceWebAcl = "ec2:DisassociateVerifiedAccessInstanceWebAcl",
    /**
     * Grants permission to disassociate a CIDR block from a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_DisassociateVpcCidrBlock.html
     */
    DisassociateVpcCidrBlock = "ec2:DisassociateVpcCidrBlock",
    /**
     * Grants permission to enable Elastic IP address transfer
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableAddressTransfer.html
     */
    EnableAddressTransfer = "ec2:EnableAddressTransfer",
    /**
     * Grants permission to enable allowed images settings
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableAllowedImagesSettings.html
     */
    EnableAllowedImagesSettings = "ec2:EnableAllowedImagesSettings",
    /**
     * Grants permission to enable infrastructure performance subscriptions
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableAwsNetworkPerformanceMetricSubscription.html
     */
    EnableAwsNetworkPerformanceMetricSubscription = "ec2:EnableAwsNetworkPerformanceMetricSubscription",
    /**
     * Grants permission to enable EBS encryption by default for your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableEbsEncryptionByDefault.html
     */
    EnableEbsEncryptionByDefault = "ec2:EnableEbsEncryptionByDefault",
    /**
     * Grants permission to enable faster launching for Windows AMIs
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableFastLaunch.html
     */
    EnableFastLaunch = "ec2:EnableFastLaunch",
    /**
     * Grants permission to enable fast snapshot restores for one or more snapshots in
     * specified Availability Zones
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableFastSnapshotRestores.html
     */
    EnableFastSnapshotRestores = "ec2:EnableFastSnapshotRestores",
    /**
     * Grants permission to re-enable a disabled AMI
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableImage.html
     */
    EnableImage = "ec2:EnableImage",
    /**
     * Grants permission to enable block public access for AMIs at the account level i
     * n the specified AWS Region
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableImageBlockPublicAccess.html
     */
    EnableImageBlockPublicAccess = "ec2:EnableImageBlockPublicAccess",
    /**
     * Grants permission to enable deprecation of the specified AMI at the specified d
     * ate and time
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableImageDeprecation.html
     */
    EnableImageDeprecation = "ec2:EnableImageDeprecation",
    /**
     * Grants permission to enable deregistration protection for an AMI. When deregist
     * ration protection is enabled, the AMI can't be deregistered
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableImageDeregistrationProtection.html
     */
    EnableImageDeregistrationProtection = "ec2:EnableImageDeregistrationProtection",
    /**
     * Grants permission to enable an AWS Organizations member account as an Amazon VP
     * C IP Address Manager (IPAM) admin account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableIpamOrganizationAdminAccount.html
     */
    EnableIpamOrganizationAdminAccount = "ec2:EnableIpamOrganizationAdminAccount",
    /**
     * Grants permission to enable organization sharing of reachability analyzer
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableReachabilityAnalyzerOrganizationSharing.html
     */
    EnableReachabilityAnalyzerOrganizationSharing = "ec2:EnableReachabilityAnalyzerOrganizationSharing",
    /**
     * Grants permission to enable access to the EC2 serial console of all instances f
     * or your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableSerialConsoleAccess.html
     */
    EnableSerialConsoleAccess = "ec2:EnableSerialConsoleAccess",
    /**
     * Grants permission to enable or modify the block public access for snapshots set
     * ting for a Region
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableSnapshotBlockPublicAccess.html
     */
    EnableSnapshotBlockPublicAccess = "ec2:EnableSnapshotBlockPublicAccess",
    /**
     * Grants permission to enable an attachment to propagate routes to a propagation
     * route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableTransitGatewayRouteTablePropagation.html
     */
    EnableTransitGatewayRouteTablePropagation = "ec2:EnableTransitGatewayRouteTablePropagation",
    /**
     * Grants permission to enable a virtual private gateway to propagate routes to a
     * VPC route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableVgwRoutePropagation.html
     */
    EnableVgwRoutePropagation = "ec2:EnableVgwRoutePropagation",
    /**
     * Grants permission to enable I/O operations for a volume that had I/O operations
     * disabled
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableVolumeIO.html
     */
    EnableVolumeIO = "ec2:EnableVolumeIO",
    /**
     * Grants permission to enable a VPC for ClassicLink
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableVpcClassicLink.html
     */
    EnableVpcClassicLink = "ec2:EnableVpcClassicLink",
    /**
     * Grants permission to enable a VPC to support DNS hostname resolution for Classi
     * cLink
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_EnableVpcClassicLinkDnsSupport.html
     */
    EnableVpcClassicLinkDnsSupport = "ec2:EnableVpcClassicLinkDnsSupport",
    /**
     * Grants permission to download the client certificate revocation list for a Clie
     * nt VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ExportClientVpnClientCertificateRevocationList.html
     */
    ExportClientVpnClientCertificateRevocationList = "ec2:ExportClientVpnClientCertificateRevocationList",
    /**
     * Grants permission to download the contents of the Client VPN endpoint configura
     * tion file for a Client VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ExportClientVpnClientConfiguration.html
     */
    ExportClientVpnClientConfiguration = "ec2:ExportClientVpnClientConfiguration",
    /**
     * Grants permission to export an Amazon Machine Image (AMI) to a VM file
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ExportImage.html
     */
    ExportImage = "ec2:ExportImage",
    /**
     * Grants permission to export routes from a transit gateway route table to an Ama
     * zon S3 bucket
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ExportTransitGatewayRoutes.html
     */
    ExportTransitGatewayRoutes = "ec2:ExportTransitGatewayRoutes",
    /**
     * Grants permission to export a verified access instance client configuration
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ExportVerifiedAccessInstanceClientConfiguration.html
     */
    ExportVerifiedAccessInstanceClientConfiguration = "ec2:ExportVerifiedAccessInstanceClientConfiguration",
    /**
     * Grants permission to get the allowed settings for images
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetAllowedImagesSettings.html
     */
    GetAllowedImagesSettings = "ec2:GetAllowedImagesSettings",
    /**
     * Grants permission to get the list of roles associated with an ACM certificate
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetAssociatedEnclaveCertificateIamRoles.html
     */
    GetAssociatedEnclaveCertificateIamRoles = "ec2:GetAssociatedEnclaveCertificateIamRoles",
    /**
     * Grants permission to get information about the IPv6 CIDR block associations for
     * a specified IPv6 address pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetAssociatedIpv6PoolCidrs.html
     */
    GetAssociatedIpv6PoolCidrs = "ec2:GetAssociatedIpv6PoolCidrs",
    /**
     * Grants permission to get network performance data
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetAwsNetworkPerformanceData.html
     */
    GetAwsNetworkPerformanceData = "ec2:GetAwsNetworkPerformanceData",
    /**
     * Grants permission to get usage information about a Capacity Reservation
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetCapacityReservationUsage.html
     */
    GetCapacityReservationUsage = "ec2:GetCapacityReservationUsage",
    /**
     * Grants permission to describe the allocations from the specified customer-owned
     * address pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetCoipPoolUsage.html
     */
    GetCoipPoolUsage = "ec2:GetCoipPoolUsage",
    /**
     * Grants permission to get the console output for an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetConsoleOutput.html
     */
    GetConsoleOutput = "ec2:GetConsoleOutput",
    /**
     * Grants permission to retrieve a JPG-format screenshot of a running instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetConsoleScreenshot.html
     */
    GetConsoleScreenshot = "ec2:GetConsoleScreenshot",
    /**
     * Grants permission to get the report summary of declarative policies
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetDeclarativePoliciesReportSummary.html
     */
    GetDeclarativePoliciesReportSummary = "ec2:GetDeclarativePoliciesReportSummary",
    /**
     * Grants permission to get the default credit option for CPU usage of a burstable
     * performance instance family
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetDefaultCreditSpecification.html
     */
    GetDefaultCreditSpecification = "ec2:GetDefaultCreditSpecification",
    /**
     * Grants permission to get the ID of the default customer master key (CMK) for EB
     * S encryption by default
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetEbsDefaultKmsKeyId.html
     */
    GetEbsDefaultKmsKeyId = "ec2:GetEbsDefaultKmsKeyId",
    /**
     * Grants permission to describe whether EBS encryption by default is enabled for
     * your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetEbsEncryptionByDefault.html
     */
    GetEbsEncryptionByDefault = "ec2:GetEbsEncryptionByDefault",
    /**
     * Grants permission to generate a CloudFormation template to streamline the integ
     * ration of VPC flow logs with Amazon Athena
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetFlowLogsIntegrationTemplate.html
     */
    GetFlowLogsIntegrationTemplate = "ec2:GetFlowLogsIntegrationTemplate",
    /**
     * Grants permission to list the resource groups to which a Capacity Reservation h
     * as been added
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetGroupsForCapacityReservation.html
     */
    GetGroupsForCapacityReservation = "ec2:GetGroupsForCapacityReservation",
    /**
     * Grants permission to preview a reservation purchase with configurations that ma
     * tch those of a Dedicated Host
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetHostReservationPurchasePreview.html
     */
    GetHostReservationPurchasePreview = "ec2:GetHostReservationPurchasePreview",
    /**
     * Grants permission to get the current state of block public access for AMIs at t
     * he account level in the specified AWS Region
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetImageBlockPublicAccessState.html
     */
    GetImageBlockPublicAccessState = "ec2:GetImageBlockPublicAccessState",
    /**
     * Grants permission to view the default instance metadata service (IMDS) settings
     * set for your account in the specified Region
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetInstanceMetadataDefaults.html
     */
    GetInstanceMetadataDefaults = "ec2:GetInstanceMetadataDefaults",
    /**
     * Grants permission to get the public endorsement key associated with the Nitro T
     * rusted Platform Module (NitroTPM) for the specified instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetInstanceTpmEkPub.html
     */
    GetInstanceTpmEkPub = "ec2:GetInstanceTpmEkPub",
    /**
     * Grants permission to view a list of instance types with specified instance attr
     * ibutes
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetInstanceTypesFromInstanceRequirements.html
     */
    GetInstanceTypesFromInstanceRequirements = "ec2:GetInstanceTypesFromInstanceRequirements",
    /**
     * Grants permission to retrieve the binary representation of the UEFI variable st
     * ore
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetInstanceUefiData.html
     */
    GetInstanceUefiData = "ec2:GetInstanceUefiData",
    /**
     * Grants permission to retrieve historical information about a CIDR within an Ama
     * zon VPC IP Address Manager (IPAM) scope
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetIpamAddressHistory.html
     */
    GetIpamAddressHistory = "ec2:GetIpamAddressHistory",
    /**
     * Grants permission to retrieve IPAM discovered accounts
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetIpamDiscoveredAccounts.html
     */
    GetIpamDiscoveredAccounts = "ec2:GetIpamDiscoveredAccounts",
    /**
     * Grants permission to retrieve the public IP addresses that have been discovered
     * by IPAM
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetIpamDiscoveredPublicAddresses.html
     */
    GetIpamDiscoveredPublicAddresses = "ec2:GetIpamDiscoveredPublicAddresses",
    /**
     * Grants permission to retrieve the resource CIDRs that are monitored as part of
     * a resource discovery
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetIpamDiscoveredResourceCidrs.html
     */
    GetIpamDiscoveredResourceCidrs = "ec2:GetIpamDiscoveredResourceCidrs",
    /**
     * Grants permission to get a list of all the CIDR allocations in an Amazon VPC IP
     * Address Manager (IPAM) pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetIpamPoolAllocations.html
     */
    GetIpamPoolAllocations = "ec2:GetIpamPoolAllocations",
    /**
     * Grants permission to get the CIDRs provisioned to an Amazon VPC IP Address Mana
     * ger (IPAM) pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetIpamPoolCidrs.html
     */
    GetIpamPoolCidrs = "ec2:GetIpamPoolCidrs",
    /**
     * Grants permission to get information about the resources in an Amazon VPC IP Ad
     * dress Manager (IPAM) scope
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetIpamResourceCidrs.html
     */
    GetIpamResourceCidrs = "ec2:GetIpamResourceCidrs",
    /**
     * Grants permission to get the configuration data of the specified instance for u
     * se with a new launch template or launch template version
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetLaunchTemplateData.html
     */
    GetLaunchTemplateData = "ec2:GetLaunchTemplateData",
    /**
     * Grants permission to get information about the resources that are associated wi
     * th the specified managed prefix list
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetManagedPrefixListAssociations.html
     */
    GetManagedPrefixListAssociations = "ec2:GetManagedPrefixListAssociations",
    /**
     * Grants permission to get information about the entries for a specified managed
     * prefix list
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetManagedPrefixListEntries.html
     */
    GetManagedPrefixListEntries = "ec2:GetManagedPrefixListEntries",
    /**
     * Grants permission to get the findings for one or more Network Access Scope anal
     * yses
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetNetworkInsightsAccessScopeAnalysisFindings.html
     */
    GetNetworkInsightsAccessScopeAnalysisFindings = "ec2:GetNetworkInsightsAccessScopeAnalysisFindings",
    /**
     * Grants permission to get the content for a specified Network Access Scope
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetNetworkInsightsAccessScopeContent.html
     */
    GetNetworkInsightsAccessScopeContent = "ec2:GetNetworkInsightsAccessScopeContent",
    /**
     * Grants permission to retrieve the encrypted administrator password for a runnin
     * g Windows instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetPasswordData.html
     */
    GetPasswordData = "ec2:GetPasswordData",
    /**
     * Grants permission to return a quote and exchange information for exchanging one
     * or more Convertible Reserved Instances for a new Convertible Reserved Instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetReservedInstancesExchangeQuote.html
     */
    GetReservedInstancesExchangeQuote = "ec2:GetReservedInstancesExchangeQuote",
    /**
     * Grants permission to describe an IAM policy that enables cross-account sharing
     *
     * See https://docs.aws.amazon.com/vpc/latest/ipam/share-pool-ipam.html
     */
    GetResourcePolicy = "ec2:GetResourcePolicy",
    /**
     * Grants permission to retrieve a list of security groups for a specified VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetSecurityGroupsForVpc.html
     */
    GetSecurityGroupsForVpc = "ec2:GetSecurityGroupsForVpc",
    /**
     * Grants permission to retrieve the access status of your account to the EC2 seri
     * al console of all instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetSerialConsoleAccessStatus.html
     */
    GetSerialConsoleAccessStatus = "ec2:GetSerialConsoleAccessStatus",
    /**
     * Grants permission to retrieve the current state of the block public access for
     * snapshots setting for a Region
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetSnapshotBlockPublicAccessState.html
     */
    GetSnapshotBlockPublicAccessState = "ec2:GetSnapshotBlockPublicAccessState",
    /**
     * Grants permission to calculate the Spot placement score for a Region or Availab
     * ility Zone based on the specified target capacity and compute requirements
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetSpotPlacementScores.html
     */
    GetSpotPlacementScores = "ec2:GetSpotPlacementScores",
    /**
     * Grants permission to retrieve information about the subnet CIDR reservations
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetSubnetCidrReservations.html
     */
    GetSubnetCidrReservations = "ec2:GetSubnetCidrReservations",
    /**
     * Grants permission to list the route tables to which a resource attachment propa
     * gates routes
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetTransitGatewayAttachmentPropagations.html
     */
    GetTransitGatewayAttachmentPropagations = "ec2:GetTransitGatewayAttachmentPropagations",
    /**
     * Grants permission to get information about the associations for a transit gatew
     * ay multicast domain
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetTransitGatewayMulticastDomainAssociations.html
     */
    GetTransitGatewayMulticastDomainAssociations = "ec2:GetTransitGatewayMulticastDomainAssociations",
    /**
     * Grants permission to get information about associations for a transit gateway p
     * olicy table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetTransitGatewayPolicyTableAssociations.html
     */
    GetTransitGatewayPolicyTableAssociations = "ec2:GetTransitGatewayPolicyTableAssociations",
    /**
     * Grants permission to get information about associations for a transit gateway p
     * olicy table entry
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetTransitGatewayPolicyTableEntries.html
     */
    GetTransitGatewayPolicyTableEntries = "ec2:GetTransitGatewayPolicyTableEntries",
    /**
     * Grants permission to get information about prefix list references for a transit
     * gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetTransitGatewayPrefixListReferences.html
     */
    GetTransitGatewayPrefixListReferences = "ec2:GetTransitGatewayPrefixListReferences",
    /**
     * Grants permission to get information about associations for a transit gateway r
     * oute table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetTransitGatewayRouteTableAssociations.html
     */
    GetTransitGatewayRouteTableAssociations = "ec2:GetTransitGatewayRouteTableAssociations",
    /**
     * Grants permission to get information about the route table propagations for a t
     * ransit gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetTransitGatewayRouteTablePropagations.html
     */
    GetTransitGatewayRouteTablePropagations = "ec2:GetTransitGatewayRouteTablePropagations",
    /**
     * Grants permission to show the Verified Access policy associated with the endpoi
     * nt
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetVerifiedAccessEndpointPolicy.html
     */
    GetVerifiedAccessEndpointPolicy = "ec2:GetVerifiedAccessEndpointPolicy",
    /**
     * Grants permission to get verified access endpoint targets
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetVerifiedAccessEndpointTargets.html
     */
    GetVerifiedAccessEndpointTargets = "ec2:GetVerifiedAccessEndpointTargets",
    /**
     * Grants permission to show the contents of the Verified Access policy associated
     * with the group
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetVerifiedAccessGroupPolicy.html
     */
    GetVerifiedAccessGroupPolicy = "ec2:GetVerifiedAccessGroupPolicy",
    /**
     * Grants permission to show the AWS Web Application Firewall (WAF) web access con
     * trol list (ACL) for a Verified Access instance
     *
     * See https://docs.aws.amazon.com/verified-access/latest/ug/waf-integration.html
     */
    GetVerifiedAccessInstanceWebAcl = "ec2:GetVerifiedAccessInstanceWebAcl",
    /**
     * Grants permission to download an AWS-provided sample configuration file to be u
     * sed with the customer gateway device
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetVpnConnectionDeviceSampleConfiguration.html
     */
    GetVpnConnectionDeviceSampleConfiguration = "ec2:GetVpnConnectionDeviceSampleConfiguration",
    /**
     * Grants permission to obtain a list of customer gateway devices for which sample
     * configuration files can be provided
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetVpnConnectionDeviceTypes.html
     */
    GetVpnConnectionDeviceTypes = "ec2:GetVpnConnectionDeviceTypes",
    /**
     * Grants permission to view available tunnel endpoint maintenance events
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_GetVpnTunnelReplacementStatus.html
     */
    GetVpnTunnelReplacementStatus = "ec2:GetVpnTunnelReplacementStatus",
    /**
     * Grants permission to transfer existing BYOIP IPv4 CIDRs to IPAM
     *
     * See https://docs.aws.amazon.com/vpc/latest/ipam/tutorials-byoip-ipam-transfer-ipv4.html
     */
    ImportByoipCidrToIpam = "ec2:ImportByoipCidrToIpam",
    /**
     * Grants permission to upload a client certificate revocation list to a Client VP
     * N endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ImportClientVpnClientCertificateRevocationList.html
     */
    ImportClientVpnClientCertificateRevocationList = "ec2:ImportClientVpnClientCertificateRevocationList",
    /**
     * Grants permission to import single or multi-volume disk images or EBS snapshots
     * into an Amazon Machine Image (AMI)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ImportImage.html
     */
    ImportImage = "ec2:ImportImage",
    /**
     * Grants permission to create an import instance task using metadata from a disk
     * image
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ImportInstance.html
     */
    ImportInstance = "ec2:ImportInstance",
    /**
     * Grants permission to import a public key from an RSA key pair that was created
     * with a third-party tool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ImportKeyPair.html
     */
    ImportKeyPair = "ec2:ImportKeyPair",
    /**
     * Grants permission to import a disk into an EBS snapshot
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ImportSnapshot.html
     */
    ImportSnapshot = "ec2:ImportSnapshot",
    /**
     * Grants permission to create an import volume task using metadata from a disk im
     * age
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ImportVolume.html
     */
    ImportVolume = "ec2:ImportVolume",
    /**
     * Grants permission to temporarily inject errors for target API requests
     *
     * See https://docs.aws.amazon.com/fis/latest/userguide/fis-actions-reference.html
     */
    InjectApiError = "ec2:InjectApiError",
    /**
     * Grants permission to list Amazon Machine Images (AMIs) that are currently in th
     * e Recycle Bin
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ListImagesInRecycleBin.html
     */
    ListImagesInRecycleBin = "ec2:ListImagesInRecycleBin",
    /**
     * Grants permission to list the Amazon EBS snapshots that are currently in the Re
     * cycle Bin
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ListSnapshotsInRecycleBin.html
     */
    ListSnapshotsInRecycleBin = "ec2:ListSnapshotsInRecycleBin",
    /**
     * Grants permission to lock an Amazon EBS snapshot in either governance or compli
     * ance mode to protect it against accidental or malicious deletions
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_LockSnapshot.html
     */
    LockSnapshot = "ec2:LockSnapshot",
    /**
     * Grants permission to modify an attribute of the specified Elastic IP address
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyAddressAttribute.html
     */
    ModifyAddressAttribute = "ec2:ModifyAddressAttribute",
    /**
     * Grants permission to modify the opt-in status of the Local Zone and Wavelength
     * Zone group for your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyAvailabilityZoneGroup.html
     */
    ModifyAvailabilityZoneGroup = "ec2:ModifyAvailabilityZoneGroup",
    /**
     * Grants permission to modify a Capacity Reservation's capacity and the condition
     * s under which it is to be released
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyCapacityReservation.html
     */
    ModifyCapacityReservation = "ec2:ModifyCapacityReservation",
    /**
     * Grants permission to modify a Capacity Reservation Fleet
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyCapacityReservationFleet.html
     */
    ModifyCapacityReservationFleet = "ec2:ModifyCapacityReservationFleet",
    /**
     * Grants permission to modify a Client VPN endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyClientVpnEndpoint.html
     */
    ModifyClientVpnEndpoint = "ec2:ModifyClientVpnEndpoint",
    /**
     * Grants permission to change the account level default credit option for CPU usa
     * ge of burstable performance instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyDefaultCreditSpecification.html
     */
    ModifyDefaultCreditSpecification = "ec2:ModifyDefaultCreditSpecification",
    /**
     * Grants permission to change the default customer master key (CMK) for EBS encry
     * ption by default for your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyEbsDefaultKmsKeyId.html
     */
    ModifyEbsDefaultKmsKeyId = "ec2:ModifyEbsDefaultKmsKeyId",
    /**
     * Grants permission to modify an EC2 Fleet
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyFleet.html
     */
    ModifyFleet = "ec2:ModifyFleet",
    /**
     * Grants permission to modify an attribute of an Amazon FPGA Image (AFI)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyFpgaImageAttribute.html
     */
    ModifyFpgaImageAttribute = "ec2:ModifyFpgaImageAttribute",
    /**
     * Grants permission to modify a Dedicated Host
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyHosts.html
     */
    ModifyHosts = "ec2:ModifyHosts",
    /**
     * Grants permission to modify the ID format for a resource
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyIdFormat.html
     */
    ModifyIdFormat = "ec2:ModifyIdFormat",
    /**
     * Grants permission to modify the ID format of a resource for a specific principa
     * l in your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyIdentityIdFormat.html
     */
    ModifyIdentityIdFormat = "ec2:ModifyIdentityIdFormat",
    /**
     * Grants permission to modify an attribute of an Amazon Machine Image (AMI)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyImageAttribute.html
     */
    ModifyImageAttribute = "ec2:ModifyImageAttribute",
    /**
     * Grants permission to modify an attribute of an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyInstanceAttribute.html
     */
    ModifyInstanceAttribute = "ec2:ModifyInstanceAttribute",
    /**
     * Grants permission to modify the Capacity Reservation settings for a stopped ins
     * tance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyInstanceCapacityReservationAttributes.html
     */
    ModifyInstanceCapacityReservationAttributes = "ec2:ModifyInstanceCapacityReservationAttributes",
    /**
     * Grants permission to modify the CPU options on an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyInstanceCpuOptions.html
     */
    ModifyInstanceCpuOptions = "ec2:ModifyInstanceCpuOptions",
    /**
     * Grants permission to modify the credit option for CPU usage on an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyInstanceCreditSpecification.html
     */
    ModifyInstanceCreditSpecification = "ec2:ModifyInstanceCreditSpecification",
    /**
     * Grants permission to modify the start time for a scheduled EC2 instance event
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyInstanceEventStartTime.html
     */
    ModifyInstanceEventStartTime = "ec2:ModifyInstanceEventStartTime",
    /**
     * Grants permission to modify the specified event window
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyInstanceEventWindow.html
     */
    ModifyInstanceEventWindow = "ec2:ModifyInstanceEventWindow",
    /**
     * Grants permission to modify the recovery behaviour for an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyInstanceMaintenanceOptions.html
     */
    ModifyInstanceMaintenanceOptions = "ec2:ModifyInstanceMaintenanceOptions",
    /**
     * Grants permission to modify the default instance metadata service (IMDS) settin
     * gs for your account in the specified Region
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyInstanceMetadataDefaults.html
     */
    ModifyInstanceMetadataDefaults = "ec2:ModifyInstanceMetadataDefaults",
    /**
     * Grants permission to modify the metadata options for an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyInstanceMetadataOptions.html
     */
    ModifyInstanceMetadataOptions = "ec2:ModifyInstanceMetadataOptions",
    /**
     * Grants permission to modify the network performance options for an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyInstanceNetworkPerformanceOptions.html
     */
    ModifyInstanceNetworkPerformanceOptions = "ec2:ModifyInstanceNetworkPerformanceOptions",
    /**
     * Grants permission to modify the placement attributes for an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyInstancePlacement.html
     */
    ModifyInstancePlacement = "ec2:ModifyInstancePlacement",
    /**
     * Grants permission to modify the configurations of an Amazon VPC IP Address Mana
     * ger (IPAM)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyIpam.html
     */
    ModifyIpam = "ec2:ModifyIpam",
    /**
     * Grants permission to modify the configurations of an Amazon VPC IP Address Mana
     * ger (IPAM) pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyIpamPool.html
     */
    ModifyIpamPool = "ec2:ModifyIpamPool",
    /**
     * Grants permission to modify the configurations of an Amazon VPC IP Address Mana
     * ger (IPAM) resource CIDR
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyIpamResourceCidr.html
     */
    ModifyIpamResourceCidr = "ec2:ModifyIpamResourceCidr",
    /**
     * Grants permission to modify a resource discovery
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyIpamResourceDiscovery.html
     */
    ModifyIpamResourceDiscovery = "ec2:ModifyIpamResourceDiscovery",
    /**
     * Grants permission to modify the configurations of an Amazon VPC IP Address Mana
     * ger (IPAM) scope
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyIpamScope.html
     */
    ModifyIpamScope = "ec2:ModifyIpamScope",
    /**
     * Grants permission to modify a launch template
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyLaunchTemplate.html
     */
    ModifyLaunchTemplate = "ec2:ModifyLaunchTemplate",
    /**
     * Grants permission to modify a local gateway route
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyLocalGatewayRoute.html
     */
    ModifyLocalGatewayRoute = "ec2:ModifyLocalGatewayRoute",
    /**
     * Grants permission to modify a managed prefix list
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyManagedPrefixList.html
     */
    ModifyManagedPrefixList = "ec2:ModifyManagedPrefixList",
    /**
     * Grants permission to modify an attribute of a network interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyNetworkInterfaceAttribute.html
     */
    ModifyNetworkInterfaceAttribute = "ec2:ModifyNetworkInterfaceAttribute",
    /**
     * Grants permission to modify the options for instance hostnames for the specifie
     * d instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyPrivateDnsNameOptions.html
     */
    ModifyPrivateDnsNameOptions = "ec2:ModifyPrivateDnsNameOptions",
    /**
     * Grants permission to modify attributes of one or more Reserved Instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyReservedInstances.html
     */
    ModifyReservedInstances = "ec2:ModifyReservedInstances",
    /**
     * Grants permission to modify the rules of a security group
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifySecurityGroupRules.html
     */
    ModifySecurityGroupRules = "ec2:ModifySecurityGroupRules",
    /**
     * Grants permission to add or remove permission settings for a snapshot
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifySnapshotAttribute.html
     */
    ModifySnapshotAttribute = "ec2:ModifySnapshotAttribute",
    /**
     * Grants permission to archive Amazon EBS snapshots
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifySnapshotTier.html
     */
    ModifySnapshotTier = "ec2:ModifySnapshotTier",
    /**
     * Grants permission to modify a Spot Fleet request
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifySpotFleetRequest.html
     */
    ModifySpotFleetRequest = "ec2:ModifySpotFleetRequest",
    /**
     * Grants permission to modify an attribute of a subnet
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifySubnetAttribute.html
     */
    ModifySubnetAttribute = "ec2:ModifySubnetAttribute",
    /**
     * Grants permission to allow or restrict mirroring network services
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyTrafficMirrorFilterNetworkServices.html
     */
    ModifyTrafficMirrorFilterNetworkServices = "ec2:ModifyTrafficMirrorFilterNetworkServices",
    /**
     * Grants permission to modify a traffic mirror rule
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyTrafficMirrorFilterRule.html
     */
    ModifyTrafficMirrorFilterRule = "ec2:ModifyTrafficMirrorFilterRule",
    /**
     * Grants permission to modify a traffic mirror session
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyTrafficMirrorSession.html
     */
    ModifyTrafficMirrorSession = "ec2:ModifyTrafficMirrorSession",
    /**
     * Grants permission to modify a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyTransitGateway.html
     */
    ModifyTransitGateway = "ec2:ModifyTransitGateway",
    /**
     * Grants permission to modify a transit gateway prefix list reference
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyTransitGatewayPrefixListReference.html
     */
    ModifyTransitGatewayPrefixListReference = "ec2:ModifyTransitGatewayPrefixListReference",
    /**
     * Grants permission to modify a VPC attachment on a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyTransitGatewayVpcAttachment.html
     */
    ModifyTransitGatewayVpcAttachment = "ec2:ModifyTransitGatewayVpcAttachment",
    /**
     * Grants permission to modify the configuration of a Verified Access endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVerifiedAccessEndpoint.html
     */
    ModifyVerifiedAccessEndpoint = "ec2:ModifyVerifiedAccessEndpoint",
    /**
     * Grants permission to modify the specified Verified Access endpoint policy
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVerifiedAccessEndpointPolicy.html
     */
    ModifyVerifiedAccessEndpointPolicy = "ec2:ModifyVerifiedAccessEndpointPolicy",
    /**
     * Grants permission to modify the specified Verified Access Group configuration
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVerifiedAccessGroup.html
     */
    ModifyVerifiedAccessGroup = "ec2:ModifyVerifiedAccessGroup",
    /**
     * Grants permission to modify the specified Verified Access group policy
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVerifiedAccessGroupPolicy.html
     */
    ModifyVerifiedAccessGroupPolicy = "ec2:ModifyVerifiedAccessGroupPolicy",
    /**
     * Grants permission to modify the configuration of the specified Verified Access
     * instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVerifiedAccessInstance.html
     */
    ModifyVerifiedAccessInstance = "ec2:ModifyVerifiedAccessInstance",
    /**
     * Grants permission to modify the logging configuration for the specified Verifie
     * d Access instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVerifiedAccessInstanceLoggingConfiguration.html
     */
    ModifyVerifiedAccessInstanceLoggingConfiguration = "ec2:ModifyVerifiedAccessInstanceLoggingConfiguration",
    /**
     * Grants permission to modify the configuration of the specified Verified Access
     * trust provider
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVerifiedAccessTrustProvider.html
     */
    ModifyVerifiedAccessTrustProvider = "ec2:ModifyVerifiedAccessTrustProvider",
    /**
     * Grants permission to modify the parameters of an EBS volume
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVolume.html
     */
    ModifyVolume = "ec2:ModifyVolume",
    /**
     * Grants permission to modify an attribute of a volume
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVolumeAttribute.html
     */
    ModifyVolumeAttribute = "ec2:ModifyVolumeAttribute",
    /**
     * Grants permission to modify an attribute of a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpcAttribute.html
     */
    ModifyVpcAttribute = "ec2:ModifyVpcAttribute",
    /**
     * Grants permission to modify an exclusion list for blocked public access on a VP
     * C
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpcBlockPublicAccessExclusion.html
     */
    ModifyVpcBlockPublicAccessExclusion = "ec2:ModifyVpcBlockPublicAccessExclusion",
    /**
     * Grants permission to modify options for blocked public access on a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpcBlockPublicAccessOptions.html
     */
    ModifyVpcBlockPublicAccessOptions = "ec2:ModifyVpcBlockPublicAccessOptions",
    /**
     * Grants permission to modify an attribute of a VPC endpoint
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpcEndpoint.html
     */
    ModifyVpcEndpoint = "ec2:ModifyVpcEndpoint",
    /**
     * Grants permission to modify a connection notification for a VPC endpoint or VPC
     * endpoint service
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpcEndpointConnectionNotification.html
     */
    ModifyVpcEndpointConnectionNotification = "ec2:ModifyVpcEndpointConnectionNotification",
    /**
     * Grants permission to modify the attributes of a VPC endpoint service configurat
     * ion
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpcEndpointServiceConfiguration.html
     */
    ModifyVpcEndpointServiceConfiguration = "ec2:ModifyVpcEndpointServiceConfiguration",
    /**
     * Grants permission to modify the payer responsibility for a VPC endpoint service
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpcEndpointServicePayerResponsibility.html
     */
    ModifyVpcEndpointServicePayerResponsibility = "ec2:ModifyVpcEndpointServicePayerResponsibility",
    /**
     * Grants permission to modify the permissions for a VPC endpoint service
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpcEndpointServicePermissions.html
     */
    ModifyVpcEndpointServicePermissions = "ec2:ModifyVpcEndpointServicePermissions",
    /**
     * Grants permission to modify the VPC peering connection options on one side of a
     * VPC peering connection
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpcPeeringConnectionOptions.html
     */
    ModifyVpcPeeringConnectionOptions = "ec2:ModifyVpcPeeringConnectionOptions",
    /**
     * Grants permission to modify the instance tenancy attribute of a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpcTenancy.html
     */
    ModifyVpcTenancy = "ec2:ModifyVpcTenancy",
    /**
     * Grants permission to modify the target gateway of a Site-to-Site VPN connection
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpnConnection.html
     */
    ModifyVpnConnection = "ec2:ModifyVpnConnection",
    /**
     * Grants permission to modify the connection options for your Site-to-Site VPN co
     * nnection
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpnConnectionOptions.html
     */
    ModifyVpnConnectionOptions = "ec2:ModifyVpnConnectionOptions",
    /**
     * Grants permission to modify the certificate for a Site-to-Site VPN connection
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpnTunnelCertificate.html
     */
    ModifyVpnTunnelCertificate = "ec2:ModifyVpnTunnelCertificate",
    /**
     * Grants permission to modify the options for a Site-to-Site VPN connection
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ModifyVpnTunnelOptions.html
     */
    ModifyVpnTunnelOptions = "ec2:ModifyVpnTunnelOptions",
    /**
     * Grants permission to enable detailed monitoring for a running instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_MonitorInstances.html
     */
    MonitorInstances = "ec2:MonitorInstances",
    /**
     * Grants permission to move an Elastic IP address from the EC2-Classic platform t
     * o the EC2-VPC platform
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_MoveAddressToVpc.html
     */
    MoveAddressToVpc = "ec2:MoveAddressToVpc",
    /**
     * Grants permission to move a BYOIP IPv4 CIDR to Amazon VPC IP Address Manager (I
     * PAM) from a public IPv4 pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_MoveByoipCidrToIpam.html
     */
    MoveByoipCidrToIpam = "ec2:MoveByoipCidrToIpam",
    /**
     * Grants permission to move available capacity from a source Capacity Reservation
     * to a destination Capacity Reservation
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_MoveCapacityReservationInstances.html
     */
    MoveCapacityReservationInstances = "ec2:MoveCapacityReservationInstances",
    /**
     * Grants permission to temporarily pause I/O operations for a target Amazon EBS v
     * olume
     *
     * See https://docs.aws.amazon.com/fis/latest/userguide/fis-actions-reference.html#ebs-actions-reference
     */
    PauseVolumeIO = "ec2:PauseVolumeIO",
    /**
     * Grants permission to provision an address range for use in AWS through bring yo
     * ur own IP addresses (BYOIP), and to create a corresponding address pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ProvisionByoipCidr.html
     */
    ProvisionByoipCidr = "ec2:ProvisionByoipCidr",
    /**
     * Grants permission to provision an Autonomous System Number (ASN) for use in an
     * Amazon Web Services account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ProvisionIpamByoasn.html
     */
    ProvisionIpamByoasn = "ec2:ProvisionIpamByoasn",
    /**
     * Grants permission to provision a CIDR to an Amazon VPC IP Address Manager (IPAM
     * ) pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ProvisionIpamPoolCidr.html
     */
    ProvisionIpamPoolCidr = "ec2:ProvisionIpamPoolCidr",
    /**
     * Grants permission to provision a CIDR to a public IPv4 pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ProvisionPublicIpv4PoolCidr.html
     */
    ProvisionPublicIpv4PoolCidr = "ec2:ProvisionPublicIpv4PoolCidr",
    /**
     * Grants permission to purchase a Capacity Block offering
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_PurchaseCapacityBlock.html
     */
    PurchaseCapacityBlock = "ec2:PurchaseCapacityBlock",
    /**
     * Grants permission to purchase a Capacity Block extension
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_PurchaseCapacityBlockExtension.html
     */
    PurchaseCapacityBlockExtension = "ec2:PurchaseCapacityBlockExtension",
    /**
     * Grants permission to purchase a reservation with configurations that match thos
     * e of a Dedicated Host
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_PurchaseHostReservation.html
     */
    PurchaseHostReservation = "ec2:PurchaseHostReservation",
    /**
     * Grants permission to purchase a Reserved Instance offering
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_PurchaseReservedInstancesOffering.html
     */
    PurchaseReservedInstancesOffering = "ec2:PurchaseReservedInstancesOffering",
    /**
     * Grants permission to purchase one or more Scheduled Instances with a specified
     * schedule
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_PurchaseScheduledInstances.html
     */
    PurchaseScheduledInstances = "ec2:PurchaseScheduledInstances",
    /**
     * Grants permission to attach an IAM policy that enables cross-account sharing to
     * a resource
     *
     * See https://docs.aws.amazon.com/vpc/latest/ipam/share-pool-ipam.html
     */
    PutResourcePolicy = "ec2:PutResourcePolicy",
    /**
     * Grants permission to request a reboot of one or more instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RebootInstances.html
     */
    RebootInstances = "ec2:RebootInstances",
    /**
     * Grants permission to register an Amazon Machine Image (AMI)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RegisterImage.html
     */
    RegisterImage = "ec2:RegisterImage",
    /**
     * Grants permission to add tags to the set of tags to include in notifications ab
     * out scheduled events for your instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RegisterInstanceEventNotificationAttributes.html
     */
    RegisterInstanceEventNotificationAttributes = "ec2:RegisterInstanceEventNotificationAttributes",
    /**
     * Grants permission to register one or more network interfaces as a member of a g
     * roup IP address in a transit gateway multicast domain
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RegisterTransitGatewayMulticastGroupMembers.html
     */
    RegisterTransitGatewayMulticastGroupMembers = "ec2:RegisterTransitGatewayMulticastGroupMembers",
    /**
     * Grants permission to register one or more network interfaces as a source of a g
     * roup IP address in a transit gateway multicast domain
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RegisterTransitGatewayMulticastGroupSources.html
     */
    RegisterTransitGatewayMulticastGroupSources = "ec2:RegisterTransitGatewayMulticastGroupSources",
    /**
     * Grants permission to reject a request to assign billing of the available capaci
     * ty of a shared Capacity Reservation to your account
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RejectCapacityReservationBillingOwnership.html
     */
    RejectCapacityReservationBillingOwnership = "ec2:RejectCapacityReservationBillingOwnership",
    /**
     * Grants permission to reject requests to associate cross-account subnets with a
     * transit gateway multicast domain
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RejectTransitGatewayMulticastDomainAssociations.html
     */
    RejectTransitGatewayMulticastDomainAssociations = "ec2:RejectTransitGatewayMulticastDomainAssociations",
    /**
     * Grants permission to reject a transit gateway peering attachment request
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RejectTransitGatewayPeeringAttachment.html
     */
    RejectTransitGatewayPeeringAttachment = "ec2:RejectTransitGatewayPeeringAttachment",
    /**
     * Grants permission to reject a request to attach a VPC to a transit gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RejectTransitGatewayVpcAttachment.html
     */
    RejectTransitGatewayVpcAttachment = "ec2:RejectTransitGatewayVpcAttachment",
    /**
     * Grants permission to reject one or more VPC endpoint connection requests to a V
     * PC endpoint service
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RejectVpcEndpointConnections.html
     */
    RejectVpcEndpointConnections = "ec2:RejectVpcEndpointConnections",
    /**
     * Grants permission to reject a VPC peering connection request
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RejectVpcPeeringConnection.html
     */
    RejectVpcPeeringConnection = "ec2:RejectVpcPeeringConnection",
    /**
     * Grants permission to release an Elastic IP address
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ReleaseAddress.html
     */
    ReleaseAddress = "ec2:ReleaseAddress",
    /**
     * Grants permission to release one or more On-Demand Dedicated Hosts
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ReleaseHosts.html
     */
    ReleaseHosts = "ec2:ReleaseHosts",
    /**
     * Grants permission to release an allocation within an Amazon VPC IP Address Mana
     * ger (IPAM) pool
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ReleaseIpamPoolAllocation.html
     */
    ReleaseIpamPoolAllocation = "ec2:ReleaseIpamPoolAllocation",
    /**
     * Grants permission to replace an IAM instance profile for an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ReplaceIamInstanceProfileAssociation.html
     */
    ReplaceIamInstanceProfileAssociation = "ec2:ReplaceIamInstanceProfileAssociation",
    /**
     * Grants permission to replace image criteria in allowed images settings
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ReplaceImageCriteriaInAllowedImagesSettings.html
     */
    ReplaceImageCriteriaInAllowedImagesSettings = "ec2:ReplaceImageCriteriaInAllowedImagesSettings",
    /**
     * Grants permission to change which network ACL a subnet is associated with
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ReplaceNetworkAclAssociation.html
     */
    ReplaceNetworkAclAssociation = "ec2:ReplaceNetworkAclAssociation",
    /**
     * Grants permission to replace an entry (rule) in a network ACL
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ReplaceNetworkAclEntry.html
     */
    ReplaceNetworkAclEntry = "ec2:ReplaceNetworkAclEntry",
    /**
     * Grants permission to replace a route within a route table in a VPC
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ReplaceRoute.html
     */
    ReplaceRoute = "ec2:ReplaceRoute",
    /**
     * Grants permission to change the route table that is associated with a subnet
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ReplaceRouteTableAssociation.html
     */
    ReplaceRouteTableAssociation = "ec2:ReplaceRouteTableAssociation",
    /**
     * Grants permission to replace a route in a transit gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ReplaceTransitGatewayRoute.html
     */
    ReplaceTransitGatewayRoute = "ec2:ReplaceTransitGatewayRoute",
    /**
     * Grants permission to replace a VPN tunnel
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ReplaceVpnTunnel.html
     */
    ReplaceVpnTunnel = "ec2:ReplaceVpnTunnel",
    /**
     * Grants permission to submit feedback about the status of an instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ReportInstanceStatus.html
     */
    ReportInstanceStatus = "ec2:ReportInstanceStatus",
    /**
     * Grants permission to create a Spot Fleet request
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RequestSpotFleet.html
     */
    RequestSpotFleet = "ec2:RequestSpotFleet",
    /**
     * Grants permission to create a Spot Instance request
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RequestSpotInstances.html
     */
    RequestSpotInstances = "ec2:RequestSpotInstances",
    /**
     * Grants permission to reset the attribute of the specified IP address
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ResetAddressAttribute.html
     */
    ResetAddressAttribute = "ec2:ResetAddressAttribute",
    /**
     * Grants permission to reset the default customer master key (CMK) for EBS encryp
     * tion for your account to use the AWS-managed CMK for EBS
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ResetEbsDefaultKmsKeyId.html
     */
    ResetEbsDefaultKmsKeyId = "ec2:ResetEbsDefaultKmsKeyId",
    /**
     * Grants permission to reset an attribute of an Amazon FPGA Image (AFI) to its de
     * fault value
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ResetFpgaImageAttribute.html
     */
    ResetFpgaImageAttribute = "ec2:ResetFpgaImageAttribute",
    /**
     * Grants permission to reset an attribute of an Amazon Machine Image (AMI) to its
     * default value
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ResetImageAttribute.html
     */
    ResetImageAttribute = "ec2:ResetImageAttribute",
    /**
     * Grants permission to reset an attribute of an instance to its default value
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ResetInstanceAttribute.html
     */
    ResetInstanceAttribute = "ec2:ResetInstanceAttribute",
    /**
     * Grants permission to reset an attribute of a network interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ResetNetworkInterfaceAttribute.html
     */
    ResetNetworkInterfaceAttribute = "ec2:ResetNetworkInterfaceAttribute",
    /**
     * Grants permission to reset permission settings for a snapshot
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_ResetSnapshotAttribute.html
     */
    ResetSnapshotAttribute = "ec2:ResetSnapshotAttribute",
    /**
     * Grants permission to restore an Elastic IP address that was previously moved to
     * the EC2-VPC platform back to the EC2-Classic platform
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RestoreAddressToClassic.html
     */
    RestoreAddressToClassic = "ec2:RestoreAddressToClassic",
    /**
     * Grants permission to restore an Amazon Machine Image (AMI) from the Recycle Bin
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RestoreImageFromRecycleBin.html
     */
    RestoreImageFromRecycleBin = "ec2:RestoreImageFromRecycleBin",
    /**
     * Grants permission to restore the entries from a previous version of a managed p
     * refix list to a new version of the prefix list
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RestoreManagedPrefixListVersion.html
     */
    RestoreManagedPrefixListVersion = "ec2:RestoreManagedPrefixListVersion",
    /**
     * Grants permission to restore an Amazon EBS snapshot from the Recycle Bin
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RestoreSnapshotFromRecycleBin.html
     */
    RestoreSnapshotFromRecycleBin = "ec2:RestoreSnapshotFromRecycleBin",
    /**
     * Grants permission to restore an archived Amazon EBS snapshot for use temporaril
     * y or permanently, or modify the restore period or restore type for a snapshot t
     * hat was previously temporarily restored
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RestoreSnapshotTier.html
     */
    RestoreSnapshotTier = "ec2:RestoreSnapshotTier",
    /**
     * Grants permission to remove an inbound authorization rule from a Client VPN end
     * point
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RevokeClientVpnIngress.html
     */
    RevokeClientVpnIngress = "ec2:RevokeClientVpnIngress",
    /**
     * Grants permission to remove one or more outbound rules from a VPC security grou
     * p
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RevokeSecurityGroupEgress.html
     */
    RevokeSecurityGroupEgress = "ec2:RevokeSecurityGroupEgress",
    /**
     * Grants permission to remove one or more inbound rules from a security group
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RevokeSecurityGroupIngress.html
     */
    RevokeSecurityGroupIngress = "ec2:RevokeSecurityGroupIngress",
    /**
     * Grants permission to launch one or more instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RunInstances.html
     */
    RunInstances = "ec2:RunInstances",
    /**
     * Grants permission to launch one or more Scheduled Instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_RunScheduledInstances.html
     */
    RunScheduledInstances = "ec2:RunScheduledInstances",
    /**
     * Grants permission to search for routes in a local gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_SearchLocalGatewayRoutes.html
     */
    SearchLocalGatewayRoutes = "ec2:SearchLocalGatewayRoutes",
    /**
     * Grants permission to search for groups, sources, and members in a transit gatew
     * ay multicast domain
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_SearchTransitGatewayMulticastGroups.html
     */
    SearchTransitGatewayMulticastGroups = "ec2:SearchTransitGatewayMulticastGroups",
    /**
     * Grants permission to search for routes in a transit gateway route table
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_SearchTransitGatewayRoutes.html
     */
    SearchTransitGatewayRoutes = "ec2:SearchTransitGatewayRoutes",
    /**
     * Grants permission to send a diagnostic interrupt to an Amazon EC2 instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_SendDiagnosticInterrupt.html
     */
    SendDiagnosticInterrupt = "ec2:SendDiagnosticInterrupt",
    /**
     * Grants permission to interrupt a Spot Instance
     *
     * See https://docs.aws.amazon.com/fis/latest/userguide/fis-actions-reference.html#send-spot-instance-interruptions
     */
    SendSpotInstanceInterruptions = "ec2:SendSpotInstanceInterruptions",
    /**
     * Grants permission to start a declarative policies report
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_StartDeclarativePoliciesReport.html
     */
    StartDeclarativePoliciesReport = "ec2:StartDeclarativePoliciesReport",
    /**
     * Grants permission to start a stopped instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_StartInstances.html
     */
    StartInstances = "ec2:StartInstances",
    /**
     * Grants permission to start a Network Access Scope analysis
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_StartNetworkInsightsAccessScopeAnalysis.html
     */
    StartNetworkInsightsAccessScopeAnalysis = "ec2:StartNetworkInsightsAccessScopeAnalysis",
    /**
     * Grants permission to start analyzing a specified path
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_StartNetworkInsightsAnalysis.html
     */
    StartNetworkInsightsAnalysis = "ec2:StartNetworkInsightsAnalysis",
    /**
     * Grants permission to start the private DNS verification process for a VPC endpo
     * int service
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_StartVpcEndpointServicePrivateDnsVerification.html
     */
    StartVpcEndpointServicePrivateDnsVerification = "ec2:StartVpcEndpointServicePrivateDnsVerification",
    /**
     * Grants permission to stop an Amazon EBS-backed instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_StopInstances.html
     */
    StopInstances = "ec2:StopInstances",
    /**
     * Grants permission to terminate active Client VPN endpoint connections
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_TerminateClientVpnConnections.html
     */
    TerminateClientVpnConnections = "ec2:TerminateClientVpnConnections",
    /**
     * Grants permission to shut down one or more instances
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_TerminateInstances.html
     */
    TerminateInstances = "ec2:TerminateInstances",
    /**
     * Grants permission to unassign one or more IPv6 addresses from a network interfa
     * ce
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_UnassignIpv6Addresses.html
     */
    UnassignIpv6Addresses = "ec2:UnassignIpv6Addresses",
    /**
     * Grants permission to unassign one or more secondary private IP addresses from a
     * network interface
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_UnassignPrivateIpAddresses.html
     */
    UnassignPrivateIpAddresses = "ec2:UnassignPrivateIpAddresses",
    /**
     * Grants permission to unassign secondary private IPv4 addresses from a private N
     * AT gateway
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_UnassignPrivateNatGatewayAddress.html
     */
    UnassignPrivateNatGatewayAddress = "ec2:UnassignPrivateNatGatewayAddress",
    /**
     * Grants permission to unlock a snapshot that is locked in governance mode or in
     * compliance mode while still in the cooling-off period
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_UnlockSnapshot.html
     */
    UnlockSnapshot = "ec2:UnlockSnapshot",
    /**
     * Grants permission to disable detailed monitoring for a running instance
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_UnmonitorInstances.html
     */
    UnmonitorInstances = "ec2:UnmonitorInstances",
    /**
     * Grants permission to update descriptions for one or more outbound rules in a VP
     * C security group
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_UpdateSecurityGroupRuleDescriptionsEgress.html
     */
    UpdateSecurityGroupRuleDescriptionsEgress = "ec2:UpdateSecurityGroupRuleDescriptionsEgress",
    /**
     * Grants permission to update descriptions for one or more inbound rules in a sec
     * urity group
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_UpdateSecurityGroupRuleDescriptionsIngress.html
     */
    UpdateSecurityGroupRuleDescriptionsIngress = "ec2:UpdateSecurityGroupRuleDescriptionsIngress",
    /**
     * Grants permission to stop advertising an address range that was provisioned for
     * use in AWS through bring your own IP addresses (BYOIP)
     *
     * See https://docs.aws.amazon.com/AWSEC2/latest/APIReference/API_WithdrawByoipCidr.html
     */
    WithdrawByoipCidr = "ec2:WithdrawByoipCidr"
}
