2023/11/07 - Amazon Data Lifecycle Manager - 3 updated api methods
Changes Added support for pre and post scripts in Amazon Data Lifecycle Manager EBS snapshot lifecycle policies.
{'PolicyDetails': {'Schedules': {'CreateRule': {'Scripts': [{'ExecuteOperationOnScriptFailure': 'boolean', 'ExecutionHandler': 'string', 'ExecutionHandlerService': 'AWS_SYSTEMS_MANAGER', 'ExecutionTimeout': 'integer', 'MaximumRetryCount': 'integer', 'Stages': ['PRE | ' 'POST']}]}}}}
Creates a policy to manage the lifecycle of the specified Amazon Web Services resources. You can create up to 100 lifecycle policies.
See also: AWS API Documentation
Request Syntax
client.create_lifecycle_policy( ExecutionRoleArn='string', Description='string', State='ENABLED'|'DISABLED', PolicyDetails={ 'PolicyType': 'EBS_SNAPSHOT_MANAGEMENT'|'IMAGE_MANAGEMENT'|'EVENT_BASED_POLICY', 'ResourceTypes': [ 'VOLUME'|'INSTANCE', ], 'ResourceLocations': [ 'CLOUD'|'OUTPOST', ], 'TargetTags': [ { 'Key': 'string', 'Value': 'string' }, ], 'Schedules': [ { 'Name': 'string', 'CopyTags': True|False, 'TagsToAdd': [ { 'Key': 'string', 'Value': 'string' }, ], 'VariableTags': [ { 'Key': 'string', 'Value': 'string' }, ], 'CreateRule': { 'Location': 'CLOUD'|'OUTPOST_LOCAL', 'Interval': 123, 'IntervalUnit': 'HOURS', 'Times': [ 'string', ], 'CronExpression': 'string', 'Scripts': [ { 'Stages': [ 'PRE'|'POST', ], 'ExecutionHandlerService': 'AWS_SYSTEMS_MANAGER', 'ExecutionHandler': 'string', 'ExecuteOperationOnScriptFailure': True|False, 'ExecutionTimeout': 123, 'MaximumRetryCount': 123 }, ] }, 'RetainRule': { 'Count': 123, 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' }, 'FastRestoreRule': { 'Count': 123, 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS', 'AvailabilityZones': [ 'string', ] }, 'CrossRegionCopyRules': [ { 'TargetRegion': 'string', 'Target': 'string', 'Encrypted': True|False, 'CmkArn': 'string', 'CopyTags': True|False, 'RetainRule': { 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' }, 'DeprecateRule': { 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' } }, ], 'ShareRules': [ { 'TargetAccounts': [ 'string', ], 'UnshareInterval': 123, 'UnshareIntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' }, ], 'DeprecateRule': { 'Count': 123, 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' }, 'ArchiveRule': { 'RetainRule': { 'RetentionArchiveTier': { 'Count': 123, 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' } } } }, ], 'Parameters': { 'ExcludeBootVolume': True|False, 'NoReboot': True|False, 'ExcludeDataVolumeTags': [ { 'Key': 'string', 'Value': 'string' }, ] }, 'EventSource': { 'Type': 'MANAGED_CWE', 'Parameters': { 'EventType': 'shareSnapshot', 'SnapshotOwner': [ 'string', ], 'DescriptionRegex': 'string' } }, 'Actions': [ { 'Name': 'string', 'CrossRegionCopy': [ { 'Target': 'string', 'EncryptionConfiguration': { 'Encrypted': True|False, 'CmkArn': 'string' }, 'RetainRule': { 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' } }, ] }, ] }, Tags={ 'string': 'string' } )
string
[REQUIRED]
The Amazon Resource Name (ARN) of the IAM role used to run the operations specified by the lifecycle policy.
string
[REQUIRED]
A description of the lifecycle policy. The characters ^[0-9A-Za-z _-]+$ are supported.
string
[REQUIRED]
The desired activation state of the lifecycle policy after creation.
dict
[REQUIRED]
The configuration details of the lifecycle policy.
PolicyType (string) --
[All policy types] The valid target resource types and actions a policy can manage. Specify EBS_SNAPSHOT_MANAGEMENT to create a lifecycle policy that manages the lifecycle of Amazon EBS snapshots. Specify IMAGE_MANAGEMENT to create a lifecycle policy that manages the lifecycle of EBS-backed AMIs. Specify EVENT_BASED_POLICY to create an event-based policy that performs specific actions when a defined event occurs in your Amazon Web Services account.
The default is EBS_SNAPSHOT_MANAGEMENT.
ResourceTypes (list) --
[Snapshot policies only] The target resource type for snapshot and AMI lifecycle policies. Use VOLUME ``to create snapshots of individual volumes or use ``INSTANCE to create multi-volume snapshots from the volumes for an instance.
(string) --
ResourceLocations (list) --
[Snapshot and AMI policies only] The location of the resources to backup. If the source resources are located in an Amazon Web Services Region, specify CLOUD. If the source resources are located on an Outpost in your account, specify OUTPOST.
If you specify OUTPOST, Amazon Data Lifecycle Manager backs up all resources of the specified type with matching target tags across all of the Outposts in your account.
(string) --
TargetTags (list) --
[Snapshot and AMI policies only] The single tag that identifies targeted resources for this policy.
(dict) --
Specifies a tag for a resource.
Key (string) -- [REQUIRED]
The tag key.
Value (string) -- [REQUIRED]
The tag value.
Schedules (list) --
[Snapshot and AMI policies only] The schedules of policy-defined actions for snapshot and AMI lifecycle policies. A policy can have up to four schedules—one mandatory schedule and up to three optional schedules.
(dict) --
[Snapshot and AMI policies only] Specifies a schedule for a snapshot or AMI lifecycle policy.
Name (string) --
The name of the schedule.
CopyTags (boolean) --
Copy all user-defined tags on a source volume to snapshots of the volume created by this policy.
TagsToAdd (list) --
The tags to apply to policy-created resources. These user-defined tags are in addition to the Amazon Web Services-added lifecycle tags.
(dict) --
Specifies a tag for a resource.
Key (string) -- [REQUIRED]
The tag key.
Value (string) -- [REQUIRED]
The tag value.
VariableTags (list) --
[AMI policies and snapshot policies that target instances only] A collection of key/value pairs with values determined dynamically when the policy is executed. Keys may be any valid Amazon EC2 tag key. Values must be in one of the two following formats: $(instance-id) or $(timestamp). Variable tags are only valid for EBS Snapshot Management – Instance policies.
(dict) --
Specifies a tag for a resource.
Key (string) -- [REQUIRED]
The tag key.
Value (string) -- [REQUIRED]
The tag value.
CreateRule (dict) --
The creation rule.
Location (string) --
[Snapshot policies only] Specifies the destination for snapshots created by the policy. To create snapshots in the same Region as the source resource, specify CLOUD. To create snapshots on the same Outpost as the source resource, specify OUTPOST_LOCAL. If you omit this parameter, CLOUD is used by default.
If the policy targets resources in an Amazon Web Services Region, then you must create snapshots in the same Region as the source resource. If the policy targets resources on an Outpost, then you can create snapshots on the same Outpost as the source resource, or in the Region of that Outpost.
Interval (integer) --
The interval between snapshots. The supported values are 1, 2, 3, 4, 6, 8, 12, and 24.
IntervalUnit (string) --
The interval unit.
Times (list) --
The time, in UTC, to start the operation. The supported format is hh:mm.
The operation occurs within a one-hour window following the specified time. If you do not specify a time, Amazon Data Lifecycle Manager selects a time within the next 24 hours.
(string) --
CronExpression (string) --
The schedule, as a Cron expression. The schedule interval must be between 1 hour and 1 year. For more information, see Cron expressions in the Amazon CloudWatch User Guide.
Scripts (list) --
[Snapshot policies that target instances only] Specifies pre and/or post scripts for a snapshot lifecycle policy that targets instances. This is useful for creating application-consistent snapshots, or for performing specific administrative tasks before or after Amazon Data Lifecycle Manager initiates snapshot creation.
For more information, see Automating application-consistent snapshots with pre and post scripts.
(dict) --
[Snapshot policies that target instances only] Information about pre and/or post scripts for a snapshot lifecycle policy that targets instances. For more information, see Automating application-consistent snapshots with pre and post scripts.
Stages (list) --
Indicate which scripts Amazon Data Lifecycle Manager should run on target instances. Pre scripts run before Amazon Data Lifecycle Manager initiates snapshot creation. Post scripts run after Amazon Data Lifecycle Manager initiates snapshot creation.
To run a pre script only, specify PRE. In this case, Amazon Data Lifecycle Manager calls the SSM document with the pre-script parameter before initiating snapshot creation.
To run a post script only, specify POST. In this case, Amazon Data Lifecycle Manager calls the SSM document with the post-script parameter after initiating snapshot creation.
To run both pre and post scripts, specify both PRE and POST. In this case, Amazon Data Lifecycle Manager calls the SSM document with the pre-script parameter before initiating snapshot creation, and then it calls the SSM document again with the post-script parameter after initiating snapshot creation.
If you are automating VSS Backups, omit this parameter.
Default: PRE and POST
(string) --
ExecutionHandlerService (string) --
Indicates the service used to execute the pre and/or post scripts.
If you are using custom SSM documents, specify AWS_SYSTEMS_MANAGER.
If you are automating VSS Backups, omit this parameter.
Default: AWS_SYSTEMS_MANAGER
ExecutionHandler (string) -- [REQUIRED]
The SSM document that includes the pre and/or post scripts to run.
If you are automating VSS backups, specify AWS_VSS_BACKUP. In this case, Amazon Data Lifecycle Manager automatically uses the AWSEC2-CreateVssSnapshot SSM document.
If you are using a custom SSM document that you own, specify either the name or ARN of the SSM document. If you are using a custom SSM document that is shared with you, specify the ARN of the SSM document.
ExecuteOperationOnScriptFailure (boolean) --
Indicates whether Amazon Data Lifecycle Manager should default to crash-consistent snapshots if the pre script fails.
To default to crash consistent snapshot if the pre script fails, specify true.
To skip the instance for snapshot creation if the pre script fails, specify false.
This parameter is supported only if you run a pre script. If you run a post script only, omit this parameter.
Default: true
ExecutionTimeout (integer) --
Specifies a timeout period, in seconds, after which Amazon Data Lifecycle Manager fails the script run attempt if it has not completed. If a script does not complete within its timeout period, Amazon Data Lifecycle Manager fails the attempt. The timeout period applies to the pre and post scripts individually.
If you are automating VSS Backups, omit this parameter.
Default: 10
MaximumRetryCount (integer) --
Specifies the number of times Amazon Data Lifecycle Manager should retry scripts that fail.
If the pre script fails, Amazon Data Lifecycle Manager retries the entire snapshot creation process, including running the pre and post scripts.
If the post script fails, Amazon Data Lifecycle Manager retries the post script only; in this case, the pre script will have completed and the snapshot might have been created.
If you do not want Amazon Data Lifecycle Manager to retry failed scripts, specify 0.
Default: 0
RetainRule (dict) --
The retention rule for snapshots or AMIs created by the policy.
Count (integer) --
The number of snapshots to retain for each volume, up to a maximum of 1000. For example if you want to retain a maximum of three snapshots, specify 3. When the fourth snapshot is created, the oldest retained snapshot is deleted, or it is moved to the archive tier if you have specified an ArchiveRule.
Interval (integer) --
The amount of time to retain each snapshot. The maximum is 100 years. This is equivalent to 1200 months, 5200 weeks, or 36500 days.
IntervalUnit (string) --
The unit of time for time-based retention. For example, to retain snapshots for 3 months, specify Interval=3 and IntervalUnit=MONTHS. Once the snapshot has been retained for 3 months, it is deleted, or it is moved to the archive tier if you have specified an ArchiveRule.
FastRestoreRule (dict) --
[Snapshot policies only] The rule for enabling fast snapshot restore.
Count (integer) --
The number of snapshots to be enabled with fast snapshot restore.
Interval (integer) --
The amount of time to enable fast snapshot restore. The maximum is 100 years. This is equivalent to 1200 months, 5200 weeks, or 36500 days.
IntervalUnit (string) --
The unit of time for enabling fast snapshot restore.
AvailabilityZones (list) -- [REQUIRED]
The Availability Zones in which to enable fast snapshot restore.
(string) --
CrossRegionCopyRules (list) --
Specifies a rule for copying snapshots or AMIs across regions.
(dict) --
[Snapshot and AMI policies only] Specifies a cross-Region copy rule for a snapshot and AMI policies.
TargetRegion (string) --
[AMI policies only] The target Region or the Amazon Resource Name (ARN) of the target Outpost for the snapshot copies.
Target (string) --
[Snapshot policies only] The target Region or the Amazon Resource Name (ARN) of the target Outpost for the snapshot copies.
Encrypted (boolean) -- [REQUIRED]
To encrypt a copy of an unencrypted snapshot if encryption by default is not enabled, enable encryption using this parameter. Copies of encrypted snapshots are encrypted, even if this parameter is false or if encryption by default is not enabled.
CmkArn (string) --
The Amazon Resource Name (ARN) of the KMS key to use for EBS encryption. If this parameter is not specified, the default KMS key for the account is used.
CopyTags (boolean) --
Indicates whether to copy all user-defined tags from the source snapshot or AMI to the cross-Region copy.
RetainRule (dict) --
The retention rule that indicates how long the cross-Region snapshot or AMI copies are to be retained in the destination Region.
Interval (integer) --
The amount of time to retain a cross-Region snapshot or AMI copy. The maximum is 100 years. This is equivalent to 1200 months, 5200 weeks, or 36500 days.
IntervalUnit (string) --
The unit of time for time-based retention. For example, to retain a cross-Region copy for 3 months, specify Interval=3 and IntervalUnit=MONTHS.
DeprecateRule (dict) --
[AMI policies only] The AMI deprecation rule for cross-Region AMI copies created by the rule.
Interval (integer) --
The period after which to deprecate the cross-Region AMI copies. The period must be less than or equal to the cross-Region AMI copy retention period, and it can't be greater than 10 years. This is equivalent to 120 months, 520 weeks, or 3650 days.
IntervalUnit (string) --
The unit of time in which to measure the Interval. For example, to deprecate a cross-Region AMI copy after 3 months, specify Interval=3 and IntervalUnit=MONTHS.
ShareRules (list) --
[Snapshot policies only] The rule for sharing snapshots with other Amazon Web Services accounts.
(dict) --
[Snapshot policies only] Specifies a rule for sharing snapshots across Amazon Web Services accounts.
TargetAccounts (list) -- [REQUIRED]
The IDs of the Amazon Web Services accounts with which to share the snapshots.
(string) --
UnshareInterval (integer) --
The period after which snapshots that are shared with other Amazon Web Services accounts are automatically unshared.
UnshareIntervalUnit (string) --
The unit of time for the automatic unsharing interval.
DeprecateRule (dict) --
[AMI policies only] The AMI deprecation rule for the schedule.
Count (integer) --
If the schedule has a count-based retention rule, this parameter specifies the number of oldest AMIs to deprecate. The count must be less than or equal to the schedule's retention count, and it can't be greater than 1000.
Interval (integer) --
If the schedule has an age-based retention rule, this parameter specifies the period after which to deprecate AMIs created by the schedule. The period must be less than or equal to the schedule's retention period, and it can't be greater than 10 years. This is equivalent to 120 months, 520 weeks, or 3650 days.
IntervalUnit (string) --
The unit of time in which to measure the Interval.
ArchiveRule (dict) --
[Snapshot policies that target volumes only] The snapshot archiving rule for the schedule. When you specify an archiving rule, snapshots are automatically moved from the standard tier to the archive tier once the schedule's retention threshold is met. Snapshots are then retained in the archive tier for the archive retention period that you specify.
For more information about using snapshot archiving, see Considerations for snapshot lifecycle policies.
RetainRule (dict) -- [REQUIRED]
Information about the retention period for the snapshot archiving rule.
RetentionArchiveTier (dict) -- [REQUIRED]
Information about retention period in the Amazon EBS Snapshots Archive. For more information, see Archive Amazon EBS snapshots.
Count (integer) --
The maximum number of snapshots to retain in the archive storage tier for each volume. The count must ensure that each snapshot remains in the archive tier for at least 90 days. For example, if the schedule creates snapshots every 30 days, you must specify a count of 3 or more to ensure that each snapshot is archived for at least 90 days.
Interval (integer) --
Specifies the period of time to retain snapshots in the archive tier. After this period expires, the snapshot is permanently deleted.
IntervalUnit (string) --
The unit of time in which to measure the Interval. For example, to retain a snapshots in the archive tier for 6 months, specify Interval=6 and IntervalUnit=MONTHS.
Parameters (dict) --
[Snapshot and AMI policies only] A set of optional parameters for snapshot and AMI lifecycle policies.
ExcludeBootVolume (boolean) --
[Snapshot policies that target instances only] Indicates whether to exclude the root volume from multi-volume snapshot sets. The default is false. If you specify true, then the root volumes attached to targeted instances will be excluded from the multi-volume snapshot sets created by the policy.
NoReboot (boolean) --
[AMI policies only] Indicates whether targeted instances are rebooted when the lifecycle policy runs. true indicates that targeted instances are not rebooted when the policy runs. false indicates that target instances are rebooted when the policy runs. The default is true (instances are not rebooted).
ExcludeDataVolumeTags (list) --
[Snapshot policies that target instances only] The tags used to identify data (non-root) volumes to exclude from multi-volume snapshot sets.
If you create a snapshot lifecycle policy that targets instances and you specify tags for this parameter, then data volumes with the specified tags that are attached to targeted instances will be excluded from the multi-volume snapshot sets created by the policy.
(dict) --
Specifies a tag for a resource.
Key (string) -- [REQUIRED]
The tag key.
Value (string) -- [REQUIRED]
The tag value.
EventSource (dict) --
[Event-based policies only] The event that activates the event-based policy.
Type (string) -- [REQUIRED]
The source of the event. Currently only managed CloudWatch Events rules are supported.
Parameters (dict) --
Information about the event.
EventType (string) -- [REQUIRED]
The type of event. Currently, only snapshot sharing events are supported.
SnapshotOwner (list) -- [REQUIRED]
The IDs of the Amazon Web Services accounts that can trigger policy by sharing snapshots with your account. The policy only runs if one of the specified Amazon Web Services accounts shares a snapshot with your account.
(string) --
DescriptionRegex (string) -- [REQUIRED]
The snapshot description that can trigger the policy. The description pattern is specified using a regular expression. The policy runs only if a snapshot with a description that matches the specified pattern is shared with your account.
For example, specifying ^.*Created for policy: policy-1234567890abcdef0.*$ configures the policy to run only if snapshots created by policy policy-1234567890abcdef0 are shared with your account.
Actions (list) --
[Event-based policies only] The actions to be performed when the event-based policy is activated. You can specify only one action per policy.
(dict) --
[Event-based policies only] Specifies an action for an event-based policy.
Name (string) -- [REQUIRED]
A descriptive name for the action.
CrossRegionCopy (list) -- [REQUIRED]
The rule for copying shared snapshots across Regions.
(dict) --
[Event-based policies only] Specifies a cross-Region copy action for event-based policies.
Target (string) -- [REQUIRED]
The target Region.
EncryptionConfiguration (dict) -- [REQUIRED]
The encryption settings for the copied snapshot.
Encrypted (boolean) -- [REQUIRED]
To encrypt a copy of an unencrypted snapshot when encryption by default is not enabled, enable encryption using this parameter. Copies of encrypted snapshots are encrypted, even if this parameter is false or when encryption by default is not enabled.
CmkArn (string) --
The Amazon Resource Name (ARN) of the KMS key to use for EBS encryption. If this parameter is not specified, the default KMS key for the account is used.
RetainRule (dict) --
Specifies a retention rule for cross-Region snapshot copies created by snapshot or event-based policies, or cross-Region AMI copies created by AMI policies. After the retention period expires, the cross-Region copy is deleted.
Interval (integer) --
The amount of time to retain a cross-Region snapshot or AMI copy. The maximum is 100 years. This is equivalent to 1200 months, 5200 weeks, or 36500 days.
IntervalUnit (string) --
The unit of time for time-based retention. For example, to retain a cross-Region copy for 3 months, specify Interval=3 and IntervalUnit=MONTHS.
dict
The tags to apply to the lifecycle policy during creation.
(string) --
(string) --
dict
Response Syntax
{ 'PolicyId': 'string' }
Response Structure
(dict) --
PolicyId (string) --
The identifier of the lifecycle policy.
{'Policy': {'PolicyDetails': {'Schedules': {'CreateRule': {'Scripts': [{'ExecuteOperationOnScriptFailure': 'boolean', 'ExecutionHandler': 'string', 'ExecutionHandlerService': 'AWS_SYSTEMS_MANAGER', 'ExecutionTimeout': 'integer', 'MaximumRetryCount': 'integer', 'Stages': ['PRE ' '| ' 'POST']}]}}}}}
Gets detailed information about the specified lifecycle policy.
See also: AWS API Documentation
Request Syntax
client.get_lifecycle_policy( PolicyId='string' )
string
[REQUIRED]
The identifier of the lifecycle policy.
dict
Response Syntax
{ 'Policy': { 'PolicyId': 'string', 'Description': 'string', 'State': 'ENABLED'|'DISABLED'|'ERROR', 'StatusMessage': 'string', 'ExecutionRoleArn': 'string', 'DateCreated': datetime(2015, 1, 1), 'DateModified': datetime(2015, 1, 1), 'PolicyDetails': { 'PolicyType': 'EBS_SNAPSHOT_MANAGEMENT'|'IMAGE_MANAGEMENT'|'EVENT_BASED_POLICY', 'ResourceTypes': [ 'VOLUME'|'INSTANCE', ], 'ResourceLocations': [ 'CLOUD'|'OUTPOST', ], 'TargetTags': [ { 'Key': 'string', 'Value': 'string' }, ], 'Schedules': [ { 'Name': 'string', 'CopyTags': True|False, 'TagsToAdd': [ { 'Key': 'string', 'Value': 'string' }, ], 'VariableTags': [ { 'Key': 'string', 'Value': 'string' }, ], 'CreateRule': { 'Location': 'CLOUD'|'OUTPOST_LOCAL', 'Interval': 123, 'IntervalUnit': 'HOURS', 'Times': [ 'string', ], 'CronExpression': 'string', 'Scripts': [ { 'Stages': [ 'PRE'|'POST', ], 'ExecutionHandlerService': 'AWS_SYSTEMS_MANAGER', 'ExecutionHandler': 'string', 'ExecuteOperationOnScriptFailure': True|False, 'ExecutionTimeout': 123, 'MaximumRetryCount': 123 }, ] }, 'RetainRule': { 'Count': 123, 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' }, 'FastRestoreRule': { 'Count': 123, 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS', 'AvailabilityZones': [ 'string', ] }, 'CrossRegionCopyRules': [ { 'TargetRegion': 'string', 'Target': 'string', 'Encrypted': True|False, 'CmkArn': 'string', 'CopyTags': True|False, 'RetainRule': { 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' }, 'DeprecateRule': { 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' } }, ], 'ShareRules': [ { 'TargetAccounts': [ 'string', ], 'UnshareInterval': 123, 'UnshareIntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' }, ], 'DeprecateRule': { 'Count': 123, 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' }, 'ArchiveRule': { 'RetainRule': { 'RetentionArchiveTier': { 'Count': 123, 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' } } } }, ], 'Parameters': { 'ExcludeBootVolume': True|False, 'NoReboot': True|False, 'ExcludeDataVolumeTags': [ { 'Key': 'string', 'Value': 'string' }, ] }, 'EventSource': { 'Type': 'MANAGED_CWE', 'Parameters': { 'EventType': 'shareSnapshot', 'SnapshotOwner': [ 'string', ], 'DescriptionRegex': 'string' } }, 'Actions': [ { 'Name': 'string', 'CrossRegionCopy': [ { 'Target': 'string', 'EncryptionConfiguration': { 'Encrypted': True|False, 'CmkArn': 'string' }, 'RetainRule': { 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' } }, ] }, ] }, 'Tags': { 'string': 'string' }, 'PolicyArn': 'string' } }
Response Structure
(dict) --
Policy (dict) --
Detailed information about the lifecycle policy.
PolicyId (string) --
The identifier of the lifecycle policy.
Description (string) --
The description of the lifecycle policy.
State (string) --
The activation state of the lifecycle policy.
StatusMessage (string) --
The description of the status.
ExecutionRoleArn (string) --
The Amazon Resource Name (ARN) of the IAM role used to run the operations specified by the lifecycle policy.
DateCreated (datetime) --
The local date and time when the lifecycle policy was created.
DateModified (datetime) --
The local date and time when the lifecycle policy was last modified.
PolicyDetails (dict) --
The configuration of the lifecycle policy
PolicyType (string) --
[All policy types] The valid target resource types and actions a policy can manage. Specify EBS_SNAPSHOT_MANAGEMENT to create a lifecycle policy that manages the lifecycle of Amazon EBS snapshots. Specify IMAGE_MANAGEMENT to create a lifecycle policy that manages the lifecycle of EBS-backed AMIs. Specify EVENT_BASED_POLICY to create an event-based policy that performs specific actions when a defined event occurs in your Amazon Web Services account.
The default is EBS_SNAPSHOT_MANAGEMENT.
ResourceTypes (list) --
[Snapshot policies only] The target resource type for snapshot and AMI lifecycle policies. Use VOLUME ``to create snapshots of individual volumes or use ``INSTANCE to create multi-volume snapshots from the volumes for an instance.
(string) --
ResourceLocations (list) --
[Snapshot and AMI policies only] The location of the resources to backup. If the source resources are located in an Amazon Web Services Region, specify CLOUD. If the source resources are located on an Outpost in your account, specify OUTPOST.
If you specify OUTPOST, Amazon Data Lifecycle Manager backs up all resources of the specified type with matching target tags across all of the Outposts in your account.
(string) --
TargetTags (list) --
[Snapshot and AMI policies only] The single tag that identifies targeted resources for this policy.
(dict) --
Specifies a tag for a resource.
Key (string) --
The tag key.
Value (string) --
The tag value.
Schedules (list) --
[Snapshot and AMI policies only] The schedules of policy-defined actions for snapshot and AMI lifecycle policies. A policy can have up to four schedules—one mandatory schedule and up to three optional schedules.
(dict) --
[Snapshot and AMI policies only] Specifies a schedule for a snapshot or AMI lifecycle policy.
Name (string) --
The name of the schedule.
CopyTags (boolean) --
Copy all user-defined tags on a source volume to snapshots of the volume created by this policy.
TagsToAdd (list) --
The tags to apply to policy-created resources. These user-defined tags are in addition to the Amazon Web Services-added lifecycle tags.
(dict) --
Specifies a tag for a resource.
Key (string) --
The tag key.
Value (string) --
The tag value.
VariableTags (list) --
[AMI policies and snapshot policies that target instances only] A collection of key/value pairs with values determined dynamically when the policy is executed. Keys may be any valid Amazon EC2 tag key. Values must be in one of the two following formats: $(instance-id) or $(timestamp). Variable tags are only valid for EBS Snapshot Management – Instance policies.
(dict) --
Specifies a tag for a resource.
Key (string) --
The tag key.
Value (string) --
The tag value.
CreateRule (dict) --
The creation rule.
Location (string) --
[Snapshot policies only] Specifies the destination for snapshots created by the policy. To create snapshots in the same Region as the source resource, specify CLOUD. To create snapshots on the same Outpost as the source resource, specify OUTPOST_LOCAL. If you omit this parameter, CLOUD is used by default.
If the policy targets resources in an Amazon Web Services Region, then you must create snapshots in the same Region as the source resource. If the policy targets resources on an Outpost, then you can create snapshots on the same Outpost as the source resource, or in the Region of that Outpost.
Interval (integer) --
The interval between snapshots. The supported values are 1, 2, 3, 4, 6, 8, 12, and 24.
IntervalUnit (string) --
The interval unit.
Times (list) --
The time, in UTC, to start the operation. The supported format is hh:mm.
The operation occurs within a one-hour window following the specified time. If you do not specify a time, Amazon Data Lifecycle Manager selects a time within the next 24 hours.
(string) --
CronExpression (string) --
The schedule, as a Cron expression. The schedule interval must be between 1 hour and 1 year. For more information, see Cron expressions in the Amazon CloudWatch User Guide.
Scripts (list) --
[Snapshot policies that target instances only] Specifies pre and/or post scripts for a snapshot lifecycle policy that targets instances. This is useful for creating application-consistent snapshots, or for performing specific administrative tasks before or after Amazon Data Lifecycle Manager initiates snapshot creation.
For more information, see Automating application-consistent snapshots with pre and post scripts.
(dict) --
[Snapshot policies that target instances only] Information about pre and/or post scripts for a snapshot lifecycle policy that targets instances. For more information, see Automating application-consistent snapshots with pre and post scripts.
Stages (list) --
Indicate which scripts Amazon Data Lifecycle Manager should run on target instances. Pre scripts run before Amazon Data Lifecycle Manager initiates snapshot creation. Post scripts run after Amazon Data Lifecycle Manager initiates snapshot creation.
To run a pre script only, specify PRE. In this case, Amazon Data Lifecycle Manager calls the SSM document with the pre-script parameter before initiating snapshot creation.
To run a post script only, specify POST. In this case, Amazon Data Lifecycle Manager calls the SSM document with the post-script parameter after initiating snapshot creation.
To run both pre and post scripts, specify both PRE and POST. In this case, Amazon Data Lifecycle Manager calls the SSM document with the pre-script parameter before initiating snapshot creation, and then it calls the SSM document again with the post-script parameter after initiating snapshot creation.
If you are automating VSS Backups, omit this parameter.
Default: PRE and POST
(string) --
ExecutionHandlerService (string) --
Indicates the service used to execute the pre and/or post scripts.
If you are using custom SSM documents, specify AWS_SYSTEMS_MANAGER.
If you are automating VSS Backups, omit this parameter.
Default: AWS_SYSTEMS_MANAGER
ExecutionHandler (string) --
The SSM document that includes the pre and/or post scripts to run.
If you are automating VSS backups, specify AWS_VSS_BACKUP. In this case, Amazon Data Lifecycle Manager automatically uses the AWSEC2-CreateVssSnapshot SSM document.
If you are using a custom SSM document that you own, specify either the name or ARN of the SSM document. If you are using a custom SSM document that is shared with you, specify the ARN of the SSM document.
ExecuteOperationOnScriptFailure (boolean) --
Indicates whether Amazon Data Lifecycle Manager should default to crash-consistent snapshots if the pre script fails.
To default to crash consistent snapshot if the pre script fails, specify true.
To skip the instance for snapshot creation if the pre script fails, specify false.
This parameter is supported only if you run a pre script. If you run a post script only, omit this parameter.
Default: true
ExecutionTimeout (integer) --
Specifies a timeout period, in seconds, after which Amazon Data Lifecycle Manager fails the script run attempt if it has not completed. If a script does not complete within its timeout period, Amazon Data Lifecycle Manager fails the attempt. The timeout period applies to the pre and post scripts individually.
If you are automating VSS Backups, omit this parameter.
Default: 10
MaximumRetryCount (integer) --
Specifies the number of times Amazon Data Lifecycle Manager should retry scripts that fail.
If the pre script fails, Amazon Data Lifecycle Manager retries the entire snapshot creation process, including running the pre and post scripts.
If the post script fails, Amazon Data Lifecycle Manager retries the post script only; in this case, the pre script will have completed and the snapshot might have been created.
If you do not want Amazon Data Lifecycle Manager to retry failed scripts, specify 0.
Default: 0
RetainRule (dict) --
The retention rule for snapshots or AMIs created by the policy.
Count (integer) --
The number of snapshots to retain for each volume, up to a maximum of 1000. For example if you want to retain a maximum of three snapshots, specify 3. When the fourth snapshot is created, the oldest retained snapshot is deleted, or it is moved to the archive tier if you have specified an ArchiveRule.
Interval (integer) --
The amount of time to retain each snapshot. The maximum is 100 years. This is equivalent to 1200 months, 5200 weeks, or 36500 days.
IntervalUnit (string) --
The unit of time for time-based retention. For example, to retain snapshots for 3 months, specify Interval=3 and IntervalUnit=MONTHS. Once the snapshot has been retained for 3 months, it is deleted, or it is moved to the archive tier if you have specified an ArchiveRule.
FastRestoreRule (dict) --
[Snapshot policies only] The rule for enabling fast snapshot restore.
Count (integer) --
The number of snapshots to be enabled with fast snapshot restore.
Interval (integer) --
The amount of time to enable fast snapshot restore. The maximum is 100 years. This is equivalent to 1200 months, 5200 weeks, or 36500 days.
IntervalUnit (string) --
The unit of time for enabling fast snapshot restore.
AvailabilityZones (list) --
The Availability Zones in which to enable fast snapshot restore.
(string) --
CrossRegionCopyRules (list) --
Specifies a rule for copying snapshots or AMIs across regions.
(dict) --
[Snapshot and AMI policies only] Specifies a cross-Region copy rule for a snapshot and AMI policies.
TargetRegion (string) --
[AMI policies only] The target Region or the Amazon Resource Name (ARN) of the target Outpost for the snapshot copies.
Target (string) --
[Snapshot policies only] The target Region or the Amazon Resource Name (ARN) of the target Outpost for the snapshot copies.
Encrypted (boolean) --
To encrypt a copy of an unencrypted snapshot if encryption by default is not enabled, enable encryption using this parameter. Copies of encrypted snapshots are encrypted, even if this parameter is false or if encryption by default is not enabled.
CmkArn (string) --
The Amazon Resource Name (ARN) of the KMS key to use for EBS encryption. If this parameter is not specified, the default KMS key for the account is used.
CopyTags (boolean) --
Indicates whether to copy all user-defined tags from the source snapshot or AMI to the cross-Region copy.
RetainRule (dict) --
The retention rule that indicates how long the cross-Region snapshot or AMI copies are to be retained in the destination Region.
Interval (integer) --
The amount of time to retain a cross-Region snapshot or AMI copy. The maximum is 100 years. This is equivalent to 1200 months, 5200 weeks, or 36500 days.
IntervalUnit (string) --
The unit of time for time-based retention. For example, to retain a cross-Region copy for 3 months, specify Interval=3 and IntervalUnit=MONTHS.
DeprecateRule (dict) --
[AMI policies only] The AMI deprecation rule for cross-Region AMI copies created by the rule.
Interval (integer) --
The period after which to deprecate the cross-Region AMI copies. The period must be less than or equal to the cross-Region AMI copy retention period, and it can't be greater than 10 years. This is equivalent to 120 months, 520 weeks, or 3650 days.
IntervalUnit (string) --
The unit of time in which to measure the Interval. For example, to deprecate a cross-Region AMI copy after 3 months, specify Interval=3 and IntervalUnit=MONTHS.
ShareRules (list) --
[Snapshot policies only] The rule for sharing snapshots with other Amazon Web Services accounts.
(dict) --
[Snapshot policies only] Specifies a rule for sharing snapshots across Amazon Web Services accounts.
TargetAccounts (list) --
The IDs of the Amazon Web Services accounts with which to share the snapshots.
(string) --
UnshareInterval (integer) --
The period after which snapshots that are shared with other Amazon Web Services accounts are automatically unshared.
UnshareIntervalUnit (string) --
The unit of time for the automatic unsharing interval.
DeprecateRule (dict) --
[AMI policies only] The AMI deprecation rule for the schedule.
Count (integer) --
If the schedule has a count-based retention rule, this parameter specifies the number of oldest AMIs to deprecate. The count must be less than or equal to the schedule's retention count, and it can't be greater than 1000.
Interval (integer) --
If the schedule has an age-based retention rule, this parameter specifies the period after which to deprecate AMIs created by the schedule. The period must be less than or equal to the schedule's retention period, and it can't be greater than 10 years. This is equivalent to 120 months, 520 weeks, or 3650 days.
IntervalUnit (string) --
The unit of time in which to measure the Interval.
ArchiveRule (dict) --
[Snapshot policies that target volumes only] The snapshot archiving rule for the schedule. When you specify an archiving rule, snapshots are automatically moved from the standard tier to the archive tier once the schedule's retention threshold is met. Snapshots are then retained in the archive tier for the archive retention period that you specify.
For more information about using snapshot archiving, see Considerations for snapshot lifecycle policies.
RetainRule (dict) --
Information about the retention period for the snapshot archiving rule.
RetentionArchiveTier (dict) --
Information about retention period in the Amazon EBS Snapshots Archive. For more information, see Archive Amazon EBS snapshots.
Count (integer) --
The maximum number of snapshots to retain in the archive storage tier for each volume. The count must ensure that each snapshot remains in the archive tier for at least 90 days. For example, if the schedule creates snapshots every 30 days, you must specify a count of 3 or more to ensure that each snapshot is archived for at least 90 days.
Interval (integer) --
Specifies the period of time to retain snapshots in the archive tier. After this period expires, the snapshot is permanently deleted.
IntervalUnit (string) --
The unit of time in which to measure the Interval. For example, to retain a snapshots in the archive tier for 6 months, specify Interval=6 and IntervalUnit=MONTHS.
Parameters (dict) --
[Snapshot and AMI policies only] A set of optional parameters for snapshot and AMI lifecycle policies.
ExcludeBootVolume (boolean) --
[Snapshot policies that target instances only] Indicates whether to exclude the root volume from multi-volume snapshot sets. The default is false. If you specify true, then the root volumes attached to targeted instances will be excluded from the multi-volume snapshot sets created by the policy.
NoReboot (boolean) --
[AMI policies only] Indicates whether targeted instances are rebooted when the lifecycle policy runs. true indicates that targeted instances are not rebooted when the policy runs. false indicates that target instances are rebooted when the policy runs. The default is true (instances are not rebooted).
ExcludeDataVolumeTags (list) --
[Snapshot policies that target instances only] The tags used to identify data (non-root) volumes to exclude from multi-volume snapshot sets.
If you create a snapshot lifecycle policy that targets instances and you specify tags for this parameter, then data volumes with the specified tags that are attached to targeted instances will be excluded from the multi-volume snapshot sets created by the policy.
(dict) --
Specifies a tag for a resource.
Key (string) --
The tag key.
Value (string) --
The tag value.
EventSource (dict) --
[Event-based policies only] The event that activates the event-based policy.
Type (string) --
The source of the event. Currently only managed CloudWatch Events rules are supported.
Parameters (dict) --
Information about the event.
EventType (string) --
The type of event. Currently, only snapshot sharing events are supported.
SnapshotOwner (list) --
The IDs of the Amazon Web Services accounts that can trigger policy by sharing snapshots with your account. The policy only runs if one of the specified Amazon Web Services accounts shares a snapshot with your account.
(string) --
DescriptionRegex (string) --
The snapshot description that can trigger the policy. The description pattern is specified using a regular expression. The policy runs only if a snapshot with a description that matches the specified pattern is shared with your account.
For example, specifying ^.*Created for policy: policy-1234567890abcdef0.*$ configures the policy to run only if snapshots created by policy policy-1234567890abcdef0 are shared with your account.
Actions (list) --
[Event-based policies only] The actions to be performed when the event-based policy is activated. You can specify only one action per policy.
(dict) --
[Event-based policies only] Specifies an action for an event-based policy.
Name (string) --
A descriptive name for the action.
CrossRegionCopy (list) --
The rule for copying shared snapshots across Regions.
(dict) --
[Event-based policies only] Specifies a cross-Region copy action for event-based policies.
Target (string) --
The target Region.
EncryptionConfiguration (dict) --
The encryption settings for the copied snapshot.
Encrypted (boolean) --
To encrypt a copy of an unencrypted snapshot when encryption by default is not enabled, enable encryption using this parameter. Copies of encrypted snapshots are encrypted, even if this parameter is false or when encryption by default is not enabled.
CmkArn (string) --
The Amazon Resource Name (ARN) of the KMS key to use for EBS encryption. If this parameter is not specified, the default KMS key for the account is used.
RetainRule (dict) --
Specifies a retention rule for cross-Region snapshot copies created by snapshot or event-based policies, or cross-Region AMI copies created by AMI policies. After the retention period expires, the cross-Region copy is deleted.
Interval (integer) --
The amount of time to retain a cross-Region snapshot or AMI copy. The maximum is 100 years. This is equivalent to 1200 months, 5200 weeks, or 36500 days.
IntervalUnit (string) --
The unit of time for time-based retention. For example, to retain a cross-Region copy for 3 months, specify Interval=3 and IntervalUnit=MONTHS.
Tags (dict) --
The tags.
(string) --
(string) --
PolicyArn (string) --
The Amazon Resource Name (ARN) of the policy.
{'PolicyDetails': {'Schedules': {'CreateRule': {'Scripts': [{'ExecuteOperationOnScriptFailure': 'boolean', 'ExecutionHandler': 'string', 'ExecutionHandlerService': 'AWS_SYSTEMS_MANAGER', 'ExecutionTimeout': 'integer', 'MaximumRetryCount': 'integer', 'Stages': ['PRE | ' 'POST']}]}}}}
Updates the specified lifecycle policy.
For more information about updating a policy, see Modify lifecycle policies.
See also: AWS API Documentation
Request Syntax
client.update_lifecycle_policy( PolicyId='string', ExecutionRoleArn='string', State='ENABLED'|'DISABLED', Description='string', PolicyDetails={ 'PolicyType': 'EBS_SNAPSHOT_MANAGEMENT'|'IMAGE_MANAGEMENT'|'EVENT_BASED_POLICY', 'ResourceTypes': [ 'VOLUME'|'INSTANCE', ], 'ResourceLocations': [ 'CLOUD'|'OUTPOST', ], 'TargetTags': [ { 'Key': 'string', 'Value': 'string' }, ], 'Schedules': [ { 'Name': 'string', 'CopyTags': True|False, 'TagsToAdd': [ { 'Key': 'string', 'Value': 'string' }, ], 'VariableTags': [ { 'Key': 'string', 'Value': 'string' }, ], 'CreateRule': { 'Location': 'CLOUD'|'OUTPOST_LOCAL', 'Interval': 123, 'IntervalUnit': 'HOURS', 'Times': [ 'string', ], 'CronExpression': 'string', 'Scripts': [ { 'Stages': [ 'PRE'|'POST', ], 'ExecutionHandlerService': 'AWS_SYSTEMS_MANAGER', 'ExecutionHandler': 'string', 'ExecuteOperationOnScriptFailure': True|False, 'ExecutionTimeout': 123, 'MaximumRetryCount': 123 }, ] }, 'RetainRule': { 'Count': 123, 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' }, 'FastRestoreRule': { 'Count': 123, 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS', 'AvailabilityZones': [ 'string', ] }, 'CrossRegionCopyRules': [ { 'TargetRegion': 'string', 'Target': 'string', 'Encrypted': True|False, 'CmkArn': 'string', 'CopyTags': True|False, 'RetainRule': { 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' }, 'DeprecateRule': { 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' } }, ], 'ShareRules': [ { 'TargetAccounts': [ 'string', ], 'UnshareInterval': 123, 'UnshareIntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' }, ], 'DeprecateRule': { 'Count': 123, 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' }, 'ArchiveRule': { 'RetainRule': { 'RetentionArchiveTier': { 'Count': 123, 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' } } } }, ], 'Parameters': { 'ExcludeBootVolume': True|False, 'NoReboot': True|False, 'ExcludeDataVolumeTags': [ { 'Key': 'string', 'Value': 'string' }, ] }, 'EventSource': { 'Type': 'MANAGED_CWE', 'Parameters': { 'EventType': 'shareSnapshot', 'SnapshotOwner': [ 'string', ], 'DescriptionRegex': 'string' } }, 'Actions': [ { 'Name': 'string', 'CrossRegionCopy': [ { 'Target': 'string', 'EncryptionConfiguration': { 'Encrypted': True|False, 'CmkArn': 'string' }, 'RetainRule': { 'Interval': 123, 'IntervalUnit': 'DAYS'|'WEEKS'|'MONTHS'|'YEARS' } }, ] }, ] } )
string
[REQUIRED]
The identifier of the lifecycle policy.
string
The Amazon Resource Name (ARN) of the IAM role used to run the operations specified by the lifecycle policy.
string
The desired activation state of the lifecycle policy after creation.
string
A description of the lifecycle policy.
dict
The configuration of the lifecycle policy. You cannot update the policy type or the resource type.
PolicyType (string) --
[All policy types] The valid target resource types and actions a policy can manage. Specify EBS_SNAPSHOT_MANAGEMENT to create a lifecycle policy that manages the lifecycle of Amazon EBS snapshots. Specify IMAGE_MANAGEMENT to create a lifecycle policy that manages the lifecycle of EBS-backed AMIs. Specify EVENT_BASED_POLICY to create an event-based policy that performs specific actions when a defined event occurs in your Amazon Web Services account.
The default is EBS_SNAPSHOT_MANAGEMENT.
ResourceTypes (list) --
[Snapshot policies only] The target resource type for snapshot and AMI lifecycle policies. Use VOLUME ``to create snapshots of individual volumes or use ``INSTANCE to create multi-volume snapshots from the volumes for an instance.
(string) --
ResourceLocations (list) --
[Snapshot and AMI policies only] The location of the resources to backup. If the source resources are located in an Amazon Web Services Region, specify CLOUD. If the source resources are located on an Outpost in your account, specify OUTPOST.
If you specify OUTPOST, Amazon Data Lifecycle Manager backs up all resources of the specified type with matching target tags across all of the Outposts in your account.
(string) --
TargetTags (list) --
[Snapshot and AMI policies only] The single tag that identifies targeted resources for this policy.
(dict) --
Specifies a tag for a resource.
Key (string) -- [REQUIRED]
The tag key.
Value (string) -- [REQUIRED]
The tag value.
Schedules (list) --
[Snapshot and AMI policies only] The schedules of policy-defined actions for snapshot and AMI lifecycle policies. A policy can have up to four schedules—one mandatory schedule and up to three optional schedules.
(dict) --
[Snapshot and AMI policies only] Specifies a schedule for a snapshot or AMI lifecycle policy.
Name (string) --
The name of the schedule.
CopyTags (boolean) --
Copy all user-defined tags on a source volume to snapshots of the volume created by this policy.
TagsToAdd (list) --
The tags to apply to policy-created resources. These user-defined tags are in addition to the Amazon Web Services-added lifecycle tags.
(dict) --
Specifies a tag for a resource.
Key (string) -- [REQUIRED]
The tag key.
Value (string) -- [REQUIRED]
The tag value.
VariableTags (list) --
[AMI policies and snapshot policies that target instances only] A collection of key/value pairs with values determined dynamically when the policy is executed. Keys may be any valid Amazon EC2 tag key. Values must be in one of the two following formats: $(instance-id) or $(timestamp). Variable tags are only valid for EBS Snapshot Management – Instance policies.
(dict) --
Specifies a tag for a resource.
Key (string) -- [REQUIRED]
The tag key.
Value (string) -- [REQUIRED]
The tag value.
CreateRule (dict) --
The creation rule.
Location (string) --
[Snapshot policies only] Specifies the destination for snapshots created by the policy. To create snapshots in the same Region as the source resource, specify CLOUD. To create snapshots on the same Outpost as the source resource, specify OUTPOST_LOCAL. If you omit this parameter, CLOUD is used by default.
If the policy targets resources in an Amazon Web Services Region, then you must create snapshots in the same Region as the source resource. If the policy targets resources on an Outpost, then you can create snapshots on the same Outpost as the source resource, or in the Region of that Outpost.
Interval (integer) --
The interval between snapshots. The supported values are 1, 2, 3, 4, 6, 8, 12, and 24.
IntervalUnit (string) --
The interval unit.
Times (list) --
The time, in UTC, to start the operation. The supported format is hh:mm.
The operation occurs within a one-hour window following the specified time. If you do not specify a time, Amazon Data Lifecycle Manager selects a time within the next 24 hours.
(string) --
CronExpression (string) --
The schedule, as a Cron expression. The schedule interval must be between 1 hour and 1 year. For more information, see Cron expressions in the Amazon CloudWatch User Guide.
Scripts (list) --
[Snapshot policies that target instances only] Specifies pre and/or post scripts for a snapshot lifecycle policy that targets instances. This is useful for creating application-consistent snapshots, or for performing specific administrative tasks before or after Amazon Data Lifecycle Manager initiates snapshot creation.
For more information, see Automating application-consistent snapshots with pre and post scripts.
(dict) --
[Snapshot policies that target instances only] Information about pre and/or post scripts for a snapshot lifecycle policy that targets instances. For more information, see Automating application-consistent snapshots with pre and post scripts.
Stages (list) --
Indicate which scripts Amazon Data Lifecycle Manager should run on target instances. Pre scripts run before Amazon Data Lifecycle Manager initiates snapshot creation. Post scripts run after Amazon Data Lifecycle Manager initiates snapshot creation.
To run a pre script only, specify PRE. In this case, Amazon Data Lifecycle Manager calls the SSM document with the pre-script parameter before initiating snapshot creation.
To run a post script only, specify POST. In this case, Amazon Data Lifecycle Manager calls the SSM document with the post-script parameter after initiating snapshot creation.
To run both pre and post scripts, specify both PRE and POST. In this case, Amazon Data Lifecycle Manager calls the SSM document with the pre-script parameter before initiating snapshot creation, and then it calls the SSM document again with the post-script parameter after initiating snapshot creation.
If you are automating VSS Backups, omit this parameter.
Default: PRE and POST
(string) --
ExecutionHandlerService (string) --
Indicates the service used to execute the pre and/or post scripts.
If you are using custom SSM documents, specify AWS_SYSTEMS_MANAGER.
If you are automating VSS Backups, omit this parameter.
Default: AWS_SYSTEMS_MANAGER
ExecutionHandler (string) -- [REQUIRED]
The SSM document that includes the pre and/or post scripts to run.
If you are automating VSS backups, specify AWS_VSS_BACKUP. In this case, Amazon Data Lifecycle Manager automatically uses the AWSEC2-CreateVssSnapshot SSM document.
If you are using a custom SSM document that you own, specify either the name or ARN of the SSM document. If you are using a custom SSM document that is shared with you, specify the ARN of the SSM document.
ExecuteOperationOnScriptFailure (boolean) --
Indicates whether Amazon Data Lifecycle Manager should default to crash-consistent snapshots if the pre script fails.
To default to crash consistent snapshot if the pre script fails, specify true.
To skip the instance for snapshot creation if the pre script fails, specify false.
This parameter is supported only if you run a pre script. If you run a post script only, omit this parameter.
Default: true
ExecutionTimeout (integer) --
Specifies a timeout period, in seconds, after which Amazon Data Lifecycle Manager fails the script run attempt if it has not completed. If a script does not complete within its timeout period, Amazon Data Lifecycle Manager fails the attempt. The timeout period applies to the pre and post scripts individually.
If you are automating VSS Backups, omit this parameter.
Default: 10
MaximumRetryCount (integer) --
Specifies the number of times Amazon Data Lifecycle Manager should retry scripts that fail.
If the pre script fails, Amazon Data Lifecycle Manager retries the entire snapshot creation process, including running the pre and post scripts.
If the post script fails, Amazon Data Lifecycle Manager retries the post script only; in this case, the pre script will have completed and the snapshot might have been created.
If you do not want Amazon Data Lifecycle Manager to retry failed scripts, specify 0.
Default: 0
RetainRule (dict) --
The retention rule for snapshots or AMIs created by the policy.
Count (integer) --
The number of snapshots to retain for each volume, up to a maximum of 1000. For example if you want to retain a maximum of three snapshots, specify 3. When the fourth snapshot is created, the oldest retained snapshot is deleted, or it is moved to the archive tier if you have specified an ArchiveRule.
Interval (integer) --
The amount of time to retain each snapshot. The maximum is 100 years. This is equivalent to 1200 months, 5200 weeks, or 36500 days.
IntervalUnit (string) --
The unit of time for time-based retention. For example, to retain snapshots for 3 months, specify Interval=3 and IntervalUnit=MONTHS. Once the snapshot has been retained for 3 months, it is deleted, or it is moved to the archive tier if you have specified an ArchiveRule.
FastRestoreRule (dict) --
[Snapshot policies only] The rule for enabling fast snapshot restore.
Count (integer) --
The number of snapshots to be enabled with fast snapshot restore.
Interval (integer) --
The amount of time to enable fast snapshot restore. The maximum is 100 years. This is equivalent to 1200 months, 5200 weeks, or 36500 days.
IntervalUnit (string) --
The unit of time for enabling fast snapshot restore.
AvailabilityZones (list) -- [REQUIRED]
The Availability Zones in which to enable fast snapshot restore.
(string) --
CrossRegionCopyRules (list) --
Specifies a rule for copying snapshots or AMIs across regions.
(dict) --
[Snapshot and AMI policies only] Specifies a cross-Region copy rule for a snapshot and AMI policies.
TargetRegion (string) --
[AMI policies only] The target Region or the Amazon Resource Name (ARN) of the target Outpost for the snapshot copies.
Target (string) --
[Snapshot policies only] The target Region or the Amazon Resource Name (ARN) of the target Outpost for the snapshot copies.
Encrypted (boolean) -- [REQUIRED]
To encrypt a copy of an unencrypted snapshot if encryption by default is not enabled, enable encryption using this parameter. Copies of encrypted snapshots are encrypted, even if this parameter is false or if encryption by default is not enabled.
CmkArn (string) --
The Amazon Resource Name (ARN) of the KMS key to use for EBS encryption. If this parameter is not specified, the default KMS key for the account is used.
CopyTags (boolean) --
Indicates whether to copy all user-defined tags from the source snapshot or AMI to the cross-Region copy.
RetainRule (dict) --
The retention rule that indicates how long the cross-Region snapshot or AMI copies are to be retained in the destination Region.
Interval (integer) --
The amount of time to retain a cross-Region snapshot or AMI copy. The maximum is 100 years. This is equivalent to 1200 months, 5200 weeks, or 36500 days.
IntervalUnit (string) --
The unit of time for time-based retention. For example, to retain a cross-Region copy for 3 months, specify Interval=3 and IntervalUnit=MONTHS.
DeprecateRule (dict) --
[AMI policies only] The AMI deprecation rule for cross-Region AMI copies created by the rule.
Interval (integer) --
The period after which to deprecate the cross-Region AMI copies. The period must be less than or equal to the cross-Region AMI copy retention period, and it can't be greater than 10 years. This is equivalent to 120 months, 520 weeks, or 3650 days.
IntervalUnit (string) --
The unit of time in which to measure the Interval. For example, to deprecate a cross-Region AMI copy after 3 months, specify Interval=3 and IntervalUnit=MONTHS.
ShareRules (list) --
[Snapshot policies only] The rule for sharing snapshots with other Amazon Web Services accounts.
(dict) --
[Snapshot policies only] Specifies a rule for sharing snapshots across Amazon Web Services accounts.
TargetAccounts (list) -- [REQUIRED]
The IDs of the Amazon Web Services accounts with which to share the snapshots.
(string) --
UnshareInterval (integer) --
The period after which snapshots that are shared with other Amazon Web Services accounts are automatically unshared.
UnshareIntervalUnit (string) --
The unit of time for the automatic unsharing interval.
DeprecateRule (dict) --
[AMI policies only] The AMI deprecation rule for the schedule.
Count (integer) --
If the schedule has a count-based retention rule, this parameter specifies the number of oldest AMIs to deprecate. The count must be less than or equal to the schedule's retention count, and it can't be greater than 1000.
Interval (integer) --
If the schedule has an age-based retention rule, this parameter specifies the period after which to deprecate AMIs created by the schedule. The period must be less than or equal to the schedule's retention period, and it can't be greater than 10 years. This is equivalent to 120 months, 520 weeks, or 3650 days.
IntervalUnit (string) --
The unit of time in which to measure the Interval.
ArchiveRule (dict) --
[Snapshot policies that target volumes only] The snapshot archiving rule for the schedule. When you specify an archiving rule, snapshots are automatically moved from the standard tier to the archive tier once the schedule's retention threshold is met. Snapshots are then retained in the archive tier for the archive retention period that you specify.
For more information about using snapshot archiving, see Considerations for snapshot lifecycle policies.
RetainRule (dict) -- [REQUIRED]
Information about the retention period for the snapshot archiving rule.
RetentionArchiveTier (dict) -- [REQUIRED]
Information about retention period in the Amazon EBS Snapshots Archive. For more information, see Archive Amazon EBS snapshots.
Count (integer) --
The maximum number of snapshots to retain in the archive storage tier for each volume. The count must ensure that each snapshot remains in the archive tier for at least 90 days. For example, if the schedule creates snapshots every 30 days, you must specify a count of 3 or more to ensure that each snapshot is archived for at least 90 days.
Interval (integer) --
Specifies the period of time to retain snapshots in the archive tier. After this period expires, the snapshot is permanently deleted.
IntervalUnit (string) --
The unit of time in which to measure the Interval. For example, to retain a snapshots in the archive tier for 6 months, specify Interval=6 and IntervalUnit=MONTHS.
Parameters (dict) --
[Snapshot and AMI policies only] A set of optional parameters for snapshot and AMI lifecycle policies.
ExcludeBootVolume (boolean) --
[Snapshot policies that target instances only] Indicates whether to exclude the root volume from multi-volume snapshot sets. The default is false. If you specify true, then the root volumes attached to targeted instances will be excluded from the multi-volume snapshot sets created by the policy.
NoReboot (boolean) --
[AMI policies only] Indicates whether targeted instances are rebooted when the lifecycle policy runs. true indicates that targeted instances are not rebooted when the policy runs. false indicates that target instances are rebooted when the policy runs. The default is true (instances are not rebooted).
ExcludeDataVolumeTags (list) --
[Snapshot policies that target instances only] The tags used to identify data (non-root) volumes to exclude from multi-volume snapshot sets.
If you create a snapshot lifecycle policy that targets instances and you specify tags for this parameter, then data volumes with the specified tags that are attached to targeted instances will be excluded from the multi-volume snapshot sets created by the policy.
(dict) --
Specifies a tag for a resource.
Key (string) -- [REQUIRED]
The tag key.
Value (string) -- [REQUIRED]
The tag value.
EventSource (dict) --
[Event-based policies only] The event that activates the event-based policy.
Type (string) -- [REQUIRED]
The source of the event. Currently only managed CloudWatch Events rules are supported.
Parameters (dict) --
Information about the event.
EventType (string) -- [REQUIRED]
The type of event. Currently, only snapshot sharing events are supported.
SnapshotOwner (list) -- [REQUIRED]
The IDs of the Amazon Web Services accounts that can trigger policy by sharing snapshots with your account. The policy only runs if one of the specified Amazon Web Services accounts shares a snapshot with your account.
(string) --
DescriptionRegex (string) -- [REQUIRED]
The snapshot description that can trigger the policy. The description pattern is specified using a regular expression. The policy runs only if a snapshot with a description that matches the specified pattern is shared with your account.
For example, specifying ^.*Created for policy: policy-1234567890abcdef0.*$ configures the policy to run only if snapshots created by policy policy-1234567890abcdef0 are shared with your account.
Actions (list) --
[Event-based policies only] The actions to be performed when the event-based policy is activated. You can specify only one action per policy.
(dict) --
[Event-based policies only] Specifies an action for an event-based policy.
Name (string) -- [REQUIRED]
A descriptive name for the action.
CrossRegionCopy (list) -- [REQUIRED]
The rule for copying shared snapshots across Regions.
(dict) --
[Event-based policies only] Specifies a cross-Region copy action for event-based policies.
Target (string) -- [REQUIRED]
The target Region.
EncryptionConfiguration (dict) -- [REQUIRED]
The encryption settings for the copied snapshot.
Encrypted (boolean) -- [REQUIRED]
To encrypt a copy of an unencrypted snapshot when encryption by default is not enabled, enable encryption using this parameter. Copies of encrypted snapshots are encrypted, even if this parameter is false or when encryption by default is not enabled.
CmkArn (string) --
The Amazon Resource Name (ARN) of the KMS key to use for EBS encryption. If this parameter is not specified, the default KMS key for the account is used.
RetainRule (dict) --
Specifies a retention rule for cross-Region snapshot copies created by snapshot or event-based policies, or cross-Region AMI copies created by AMI policies. After the retention period expires, the cross-Region copy is deleted.
Interval (integer) --
The amount of time to retain a cross-Region snapshot or AMI copy. The maximum is 100 years. This is equivalent to 1200 months, 5200 weeks, or 36500 days.
IntervalUnit (string) --
The unit of time for time-based retention. For example, to retain a cross-Region copy for 3 months, specify Interval=3 and IntervalUnit=MONTHS.
dict
Response Syntax
{}
Response Structure
(dict) --