I’m trying to write an IAM policy that only enables AWS users to launch an instance if the security group is one of two types. Because there is no security group Condition Key, I opted for using condition statements, such that an EC2 instance can't be started/run I’m trying to write an IAM policy that only ena