We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 93780f6 commit 508a7bcCopy full SHA for 508a7bc
1 file changed
infrastructure/stacks/iams-developer-roles/github_actions_iam_bootstrap_policies.tf
@@ -88,6 +88,7 @@ data "aws_iam_policy_document" "iam_bootstrap_iam_management" {
88
"iam:DetachRolePolicy",
89
"iam:PutRolePolicy",
90
"iam:DeleteRolePolicy",
91
+ "iam:UpdateAssumeRolePolicy",
92
"iam:PutRolePermissionsBoundary",
93
"iam:DeleteRolePermissionsBoundary",
94
]
@@ -101,6 +102,7 @@ data "aws_iam_policy_document" "iam_bootstrap_iam_management" {
101
102
sid = "DenyBootstrapBoundaryModification"
103
effect = "Deny"
104
actions = [
105
+ "iam:CreatePolicyVersion",
106
"iam:DeletePolicy",
107
"iam:DeletePolicyVersion",
108
"iam:SetDefaultPolicyVersion",
0 commit comments