aws: add needed IAM permission for join service

This commit is contained in:
Leonard Cohnen 2022-11-03 00:55:55 +01:00 committed by 3u13r
parent f164af29cf
commit f7a5f299a0

View File

@ -109,7 +109,8 @@ resource "aws_iam_policy" "control_plane_policy" {
"logs:DescribeLogGroups", "logs:DescribeLogGroups",
"logs:ListTagsLogGroup", "logs:ListTagsLogGroup",
"logs:CreateLogStream", "logs:CreateLogStream",
"tag:GetResources" "tag:GetResources",
"ec2:DescribeImages"
], ],
"Resource": [ "Resource": [
"*" "*"
@ -172,7 +173,8 @@ resource "aws_iam_policy" "worker_node_policy" {
"logs:DescribeLogGroups", "logs:DescribeLogGroups",
"logs:ListTagsLogGroup", "logs:ListTagsLogGroup",
"logs:CreateLogStream", "logs:CreateLogStream",
"tag:GetResources" "tag:GetResources",
"ec2:DescribeImages"
], ],
"Resource": "*" "Resource": "*"
} }