mirror of
https://github.com/edgelesssys/constellation.git
synced 2025-11-20 03:52:24 -05:00
aws: add needed IAM permission for join service
This commit is contained in:
parent
f164af29cf
commit
f7a5f299a0
1 changed files with 4 additions and 2 deletions
|
|
@ -109,7 +109,8 @@ resource "aws_iam_policy" "control_plane_policy" {
|
||||||
"logs:DescribeLogGroups",
|
"logs:DescribeLogGroups",
|
||||||
"logs:ListTagsLogGroup",
|
"logs:ListTagsLogGroup",
|
||||||
"logs:CreateLogStream",
|
"logs:CreateLogStream",
|
||||||
"tag:GetResources"
|
"tag:GetResources",
|
||||||
|
"ec2:DescribeImages"
|
||||||
],
|
],
|
||||||
"Resource": [
|
"Resource": [
|
||||||
"*"
|
"*"
|
||||||
|
|
@ -172,7 +173,8 @@ resource "aws_iam_policy" "worker_node_policy" {
|
||||||
"logs:DescribeLogGroups",
|
"logs:DescribeLogGroups",
|
||||||
"logs:ListTagsLogGroup",
|
"logs:ListTagsLogGroup",
|
||||||
"logs:CreateLogStream",
|
"logs:CreateLogStream",
|
||||||
"tag:GetResources"
|
"tag:GetResources",
|
||||||
|
"ec2:DescribeImages"
|
||||||
],
|
],
|
||||||
"Resource": "*"
|
"Resource": "*"
|
||||||
}
|
}
|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue