All Products
Search
Document Center

Resource Access Management:Revoke permissions from a RAM user

Last Updated:May 06, 2024

If a Resource Access Management (RAM) user no longer needs specific permissions or the RAM user leaves your organization, you can revoke the permissions from the RAM user. This topic describes how to revoke permissions from a RAM user.

Warning

After you revoke permissions from a RAM user, the RAM user no longer has the permissions to access specific resources. Before you revoke permissions from a RAM user, make sure that the operation meets your business requirements.

Method 1: Revoke permissions from a RAM user on the Users page

  1. Log on to the RAM console as a RAM administrator.

  2. In the left-side navigation pane, choose Identities > Users.

  3. On the Users page, click the username of the RAM user that you want to manage.

  4. On the page that appears, click the Permissions tab, find the policy that you want to detach from the RAM user, and then click Revoke Permission in the Actions column.

  5. In the Revoke Permission message, click Revoke Permission.

Method 2: Revoke permissions from a RAM user on the Grants page

  1. Log on to the RAM console as a RAM administrator.

  2. In the left-side navigation pane, choose Permissions > Grants.

  3. On the Permission page, find the authorization record that you want to manage and click Revoke Permission in the Actions column.

    You can also select multiple authorization records and click Revoke Permission below the authorization record list to revoke multiple authorization records from multiple RAM users at a time.

  4. In the Revoke Permission message, click Revoke Permission.