File tree Expand file tree Collapse file tree
infrastructure/stacks/iams-developer-roles Expand file tree Collapse file tree Original file line number Diff line number Diff line change @@ -181,7 +181,7 @@ resource "aws_iam_policy" "dynamodb_management" {
181181 " dynamodb:UpdateTable" ,
182182 ],
183183 Resource = [
184- " arn:aws:dynamodb:* :${ data . aws_caller_identity . current . account_id } :table/*eligibility-signposting-api-${ var . environment } -eligibility_datastore"
184+ " arn:aws:dynamodb:${ var . default_aws_region } :${ data . aws_caller_identity . current . account_id } :table/*eligibility-signposting-api-${ var . environment } -eligibility_datastore"
185185 ]
186186 },
187187
@@ -218,7 +218,7 @@ resource "aws_iam_policy" "dynamodb_management" {
218218 " dynamodb:Query"
219219 ],
220220 Resource = [
221- " arn:aws:dynamodb:* :${ data . aws_caller_identity . current . account_id } :table/*eligibility-signposting-api-${ var . environment } -eligibility_datastore"
221+ " arn:aws:dynamodb:${ var . default_aws_region } :${ data . aws_caller_identity . current . account_id } :table/*eligibility-signposting-api-${ var . environment } -eligibility_datastore"
222222 ]
223223 }
224224 ] : []
@@ -843,7 +843,7 @@ data "aws_iam_policy_document" "regression_test_permissions" {
843843 " dynamodb:ListTagsOfResource"
844844 ]
845845 resources = [
846- " arn:aws:dynamodb:* :${ data . aws_caller_identity . current . account_id } :table/*eligibility-signposting-api-${ var . environment } -eligibility_datastore"
846+ " arn:aws:dynamodb:${ var . default_aws_region } :${ data . aws_caller_identity . current . account_id } :table/*eligibility-signposting-api-${ var . environment } -eligibility_datastore"
847847 ]
848848 }
849849
You can’t perform that action at this time.
0 commit comments