We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent df7430e commit ea1f4c9Copy full SHA for ea1f4c9
1 file changed
infrastructure/stacks/iams-developer-roles/github_actions_policies.tf
@@ -182,10 +182,15 @@ resource "aws_iam_policy" "api_infrastructure" {
182
Effect = "Allow",
183
Action = [
184
"logs:Describe*",
185
+ "logs:PutLogEvents",
186
+ "logs:CreateLogGroup",
187
+ "logs:CreateLogStream",
188
"ssm:DescribeParameters",
189
"ec2:Describe*",
190
"ec2:DescribeVpcs",
191
"acm:ListCertificates",
192
+ "acm:DescribeCertificate",
193
+ "acm:GetCertificate",
194
"apigateway:*",
195
"iam:PassRole",
196
],
@@ -231,8 +236,6 @@ resource "aws_iam_policy" "api_infrastructure" {
231
236
"ssm:AddTagsToResource",
232
237
233
238
# acm
234
- "acm:DescribeCertificate",
235
- "acm:GetCertificate",
239
"acm:ListTagsForCertificate",
240
"acm:RequestCertificate",
241
"acm:AddTagsToCertificate",
0 commit comments