Skip to content

Commit 07de2ce

Browse files
committed
Added extra permissions to github actions role
1 parent 73a27ae commit 07de2ce

1 file changed

Lines changed: 8 additions & 2 deletions

File tree

infrastructure/stacks/iams-developer-roles/github_actions_policies.tf

Lines changed: 8 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -56,8 +56,14 @@ resource "aws_iam_policy" "api_infrastructure" {
5656
"s3:*",
5757

5858
# KMS permissions
59-
"kms:ListAliases",
60-
"kms:DescribeKey",
59+
"kms:List*",
60+
"kms:Describe*",
61+
62+
# Cloudwatch permissions
63+
"logs:Describe*",
64+
65+
#EC2 permissions
66+
"ec2:Describe*",
6167

6268
# IAM permissions (scoped to resources with specific path prefix)
6369
"iam:Get*",

0 commit comments

Comments
 (0)