Skip to content

Commit a007ddb

Browse files
authored
Update iam role for aws-credential-manager (#532)
Signed-off-by: rasel <rasel@appscode.com>
1 parent 218e3ae commit a007ddb

1 file changed

Lines changed: 11 additions & 1 deletion

File tree

files/products/appscode/aws-selfhost/iam-credential-manager-permissions.json

Lines changed: 11 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,17 @@
33
"Statement": [
44
{
55
"Effect": "Allow",
6-
"Action": ["iam:GetRole", "iam:UpdateAssumeRolePolicy", "iam:ListRoles"],
6+
"Action": [
7+
"iam:GetRole",
8+
"iam:UpdateAssumeRolePolicy",
9+
"iam:ListRoles",
10+
"iam:CreateRole",
11+
"iam:DeleteRole",
12+
"iam:PutRolePolicy",
13+
"iam:ListAttachedRolePolicies",
14+
"iam:GetRolePolicy",
15+
"iam:AttachRolePolicy"
16+
],
717
"Resource": "*"
818
}
919
]

0 commit comments

Comments
 (0)