Skip to content

Commit a074749

Browse files
committed
fix permissions for s3 access
1 parent cf276d2 commit a074749

File tree

1 file changed

+3
-0
lines changed
  • node/terraform/modules/functions-node

1 file changed

+3
-0
lines changed

node/terraform/modules/functions-node/iam.tf

+3
Original file line numberDiff line numberDiff line change
@@ -104,6 +104,7 @@ data "aws_iam_policy_document" "deploy" {
104104
actions = [
105105
"s3:CreateBucket",
106106
"s3:GetBucketObjectLockConfiguration",
107+
"s3:GetBucketAcl",
107108
"s3:PutBucketAcl",
108109
"s3:GetBucketWebsite",
109110
"s3:GetReplicationConfiguration",
@@ -287,6 +288,7 @@ data "aws_iam_policy_document" "destroy" {
287288
"s3:GetBucketLocation",
288289
"s3:GetBucketLogging",
289290
"s3:GetBucketObjectLockConfiguration",
291+
"s3:GetBucketAcl",
290292
"s3:GetBucketPolicy",
291293
"s3:GetBucketRequestPayment",
292294
"s3:GetBucketTagging",
@@ -295,6 +297,7 @@ data "aws_iam_policy_document" "destroy" {
295297
"s3:GetEncryptionConfiguration",
296298
"s3:GetLifecycleConfiguration",
297299
"s3:GetReplicationConfiguration",
300+
"s3:DeleteBucketWebsite",
298301
]
299302
resources = [
300303
"arn:aws:s3:::*-${var.suffix}/*",

0 commit comments

Comments
 (0)