Help Center/ IAM Identity Center/ API Reference/ API/ Access Control Attribute Management/ Disabling Access Control Attributes for a Specified Instance
Updated on 2025-08-21 GMT+08:00

Disabling Access Control Attributes for a Specified Instance

Function

This API is used to disable ABAC for a specified IAM Identity Center instance and delete all configured attribute mappings. It can be called only from the organization's management account or from a delegated administrator account of a cloud service.

URI

DELETE /v1/instances/{instance_id}/access-control-attribute-configuration

Table 1 Path parameters

Parameter

Mandatory

Type

Description

instance_id

Yes

String

Globally unique ID of an IAM Identity Center instance.

Request Parameters

Table 2 Parameters in the request header

Parameter

Mandatory

Type

Description

X-Security-Token

No

String

Security token (session token) of your temporary security credentials. If a temporary security credential is used, this header is required.

Maximum length: 2048

Response Parameters

Status code: 400

Table 3 Parameters in the response body

Parameter

Type

Description

error_code

String

Error code.

error_msg

String

Error message.

request_id

String

Unique ID of a request.

encoded_authorization_message

String

Encrypted error message.

Status code: 403

Table 4 Parameters in the response body

Parameter

Type

Description

error_code

String

Error code.

error_msg

String

Error message.

request_id

String

Unique ID of a request.

encoded_authorization_message

String

Encrypted error message.

Example Request

Disabling access control attributes for a specified instance

DELETE https://{hostname}/v1/instances/{instance_id}/access-control-attribute-configuration

Example Response

None

Status Codes

For details, see Status Codes.

Error Codes

For details, see Error Codes.