Some AWS-managed policies (`AWSServiceRolePolicyFor*`) are designated as "Service Role Policies" and are intended to be attached only to AWS-managed Service Roles. Attempting to attach these policies to a regular IAM role will result in an error like «Cannot attach AWS reserved policy to an IAM role».