In the examples of SQS Policy

I understand that I can set who is allowed to send messages to the SQS

But how can I configure the policy to set who is allowed to read the SQS ?

Same way, just using sqs:ReceiveMessage action.

You can also grant sqs:ReceiveMessage to IAM Role/User/other actor - as long as there is no explicit Deny, either way will work.

answered 5 months ago

