DocsAWS 101BlogServices

IoT

IoT Core control plane — things, thing groups/types, policies, certificates, topic rules, jobs and provisioning templates, plus an IoT Data shadow/publish surface. Jobs speak both planes: the iot-jobs-data HTTP API and the reserved $aws/things/<t>/jobs/# MQTT topics (get, start-next, <jobId>/get incl. $next, <jobId>/update, with notify/notify-next state changes). Shadow writes over HTTP publish the reserved-topic notifications, so topic rules fire for backend updates too.

REST-JSON multi-tenant 98 operations

Quick start

# See /docs/services/ for SDK patterns; IoT uses the standard boto3 client.

Supported operations

98 operations exposed by this service as of MiniStack 1.5.24. Extracted directly from the handler dispatch in the source module.

AddThingToThingGroup AttachPolicy AttachPrincipalPolicy AttachThingPrincipal CancelJob CancelJobExecution CreateCertificateFromCsr CreateDomainConfiguration CreateJob CreateJobTemplate CreateKeysAndCertificate CreatePolicy CreatePolicyVersion CreateProvisioningTemplate CreateThing CreateThingGroup CreateThingType CreateTopicRule DeleteCACertificate DeleteCertificate DeleteDomainConfiguration DeleteJob DeleteJobTemplate DeletePolicy DeletePolicyVersion DeleteProvisioningTemplate DeleteRegistrationCode DeleteThing DeleteThingGroup DeleteThingShadow DeleteThingType DeleteTopicRule DeprecateThingType DescribeCACertificate DescribeCertificate DescribeDomainConfiguration DescribeEndpoint DescribeEventConfigurations DescribeIndex DescribeJob DescribeJobExecution DescribeJobTemplate DescribeProvisioningTemplate DescribeThing DescribeThingGroup DescribeThingType DetachPolicy DetachPrincipalPolicy DetachThingPrincipal GetIndexingConfiguration GetJobDocument GetPendingJobExecutions GetPolicy GetPolicyVersion GetRegistrationCode GetThingShadow GetTopicRule ListAttachedPolicies ListCACertificates ListCertificates ListCertificatesByCA ListDomainConfigurations ListIndices ListJobExecutionsForThing ListJobs ListJobTemplates ListPolicies ListPolicyPrincipals ListPolicyVersions ListPrincipalPolicies ListPrincipalThings ListProvisioningTemplates ListTargetsForPolicy ListThingGroups ListThingGroupsForThing ListThingPrincipals ListThings ListThingsInThingGroup ListThingTypes ListTopicRules Publish RegisterCACertificate RegisterCertificate RegisterCertificateWithoutCA RemoveThingFromThingGroup ReplaceTopicRule SearchIndex StartNextPendingJobExecution UpdateCACertificate UpdateCertificate UpdateDomainConfiguration UpdateEventConfigurations UpdateIndexingConfiguration UpdateJobExecution UpdateProvisioningTemplate UpdateThing UpdateThingGroup UpdateThingShadow

CloudFormation

The CloudFormation engine provisions these resource types via this service:

AWS::IoT::TopicRule AWS::IoT::Policy AWS::IoT::ThingType AWS::IoT::CACertificate AWS::IoT::ProvisioningTemplate

See CloudFormation engine for intrinsic support and lifecycle details.

Known limitations

  • The rules engine evaluates each rule SQL SELECT on publish and dispatches Lambda, republish, DynamoDBv2, SNS and SQS actions (other action types are stored but skipped, with a debug log). An embedded MQTT 3.1.1 broker runs over WebSocket (pub/sub, wildcards, QoS, retained messages, persistent sessions), and a native MQTT-over-TLS listener runs on port 8883, on by default when the cryptography package is installed (IOT_MTLS_ENABLED=0 disables it).
  • Retained-message data-plane ops (GetRetainedMessage / ListRetainedMessages) return 501 Not Implemented.

Source

  • ministack/services/iot.py

Read the source to verify the ops list above — dispatch tables and handler functions are the ground truth.