:doc:`SSOAdmin <../../sso-admin>` / Client / get_permissions_boundary_for_permission_set

*******************************************
get_permissions_boundary_for_permission_set
*******************************************



.. py:method:: SSOAdmin.Client.get_permissions_boundary_for_permission_set(**kwargs)

  

  Obtains the permissions boundary for a specified  PermissionSet.

  

  See also: `AWS API Documentation <https://docs.aws.amazon.com/goto/WebAPI/sso-admin-2020-07-20/GetPermissionsBoundaryForPermissionSet>`_  


  **Request Syntax**
  ::

    response = client.get_permissions_boundary_for_permission_set(
        InstanceArn='string',
        PermissionSetArn='string'
    )
    
  :type InstanceArn: string
  :param InstanceArn: **[REQUIRED]** 

    The ARN of the IAM Identity Center instance under which the operation will be executed.

    

  
  :type PermissionSetArn: string
  :param PermissionSetArn: **[REQUIRED]** 

    The ARN of the ``PermissionSet``.

    

  
  
  :rtype: dict
  :returns: 
    
    **Response Syntax**

    
    ::

      {
          'PermissionsBoundary': {
              'CustomerManagedPolicyReference': {
                  'Name': 'string',
                  'Path': 'string'
              },
              'ManagedPolicyArn': 'string'
          }
      }
      
    **Response Structure**

    

    - *(dict) --* 
      

      - **PermissionsBoundary** *(dict) --* 

        The permissions boundary attached to the specified permission set.

        
        

        - **CustomerManagedPolicyReference** *(dict) --* 

          Specifies the name and path of a customer managed policy. You must have an IAM policy that matches the name and path in each Amazon Web Services account where you want to deploy your permission set.

          
          

          - **Name** *(string) --* 

            The name of the IAM policy that you have configured in each account where you want to deploy your permission set.

            
          

          - **Path** *(string) --* 

            The path to the IAM policy that you have configured in each account where you want to deploy your permission set. The default is ``/``. For more information, see `Friendly names and paths <https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_identifiers.html#identifiers-friendly-names>`__ in the *IAM User Guide*.

            
      
        

        - **ManagedPolicyArn** *(string) --* 

          The Amazon Web Services managed policy ARN that you want to attach to a permission set as a permissions boundary.

          
    
  
  **Exceptions**
  
  *   :py:class:`SSOAdmin.Client.exceptions.ThrottlingException`

  
  *   :py:class:`SSOAdmin.Client.exceptions.InternalServerException`

  
  *   :py:class:`SSOAdmin.Client.exceptions.ResourceNotFoundException`

  
  *   :py:class:`SSOAdmin.Client.exceptions.AccessDeniedException`

  
  *   :py:class:`SSOAdmin.Client.exceptions.ValidationException`

  