どうも、セクションナイン の 吉田真吾(@yoshidashingo)です。
IAMポリシーのサービスアクションやその履歴は以下の粒度で管理されているので、API GatewayとかService catalogなどは知らないとハマる(該当項目見つからない→別項目でした、みたいな)可能性があるのでメモ書き。全部で72サービスですってよ。
Amazon API Gateway Amazon AppStream Amazon CloudFront Amazon CloudSearch Amazon CloudWatch Amazon CloudWatch Logs Amazon Cognito Identity Amazon Cognito Sync Amazon DynamoDB Amazon EC2 Amazon EC2 Container Registry Amazon EC2 Container Service Amazon Elastic File System Amazon Elastic MapReduce Amazon Elastic Transcoder Amazon Elasticsearch Service Amazon Glacier Amazon Inspector Amazon Kinesis Amazon Kinesis Firehose Amazon Machine Learning Amazon Mobile Analytics Amazon RDS Amazon Redshift Amazon Route 53 Amazon Route53 Domains Amazon S3 Amazon SES Amazon Simple Systems Manager Amazon Simple Workflow Service Amazon SimpleDB Amazon SNS Amazon SQS Amazon Storage Gateway Amazon WorkDocs Amazon WorkMail Amazon WorkSpaces Amazon WorkSpaces Application Manager Auto Scaling AWS Billing AWS CloudFormation AWS CloudHSM AWS CloudTrail AWS CodeCommit AWS CodeDeploy AWS CodePipeline AWS Config AWS Database Migration Service AWS Device Farm AWS Direct Connect AWS Directory Service AWS Elastic Beanstalk AWS ElastiCache AWS Identity and Access Management AWS Import Export AWS IoT AWS Key Management Service AWS Lambda AWS Marketplace AWS Marketplace Management Portal AWS Mobile Hub AWS OpsWorks AWS Security Token Service AWS Service Catalog AWS Service Catalog (Admin) AWS Service Catalog (User) AWS Support AWS Trusted Advisor AWS WAF Data Pipeline Elastic Load Balancing Manage - Amazon API Gateway