Untitled
unknown
json
a year ago
3.0 kB
10
Indexable
{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Action": [
"elasticbeanstalk:*",
"ec2:DescribeInstances",
"ec2:DescribeImages",
"ec2:DescribeSecurityGroups",
"ec2:DescribeSubnets",
"ec2:DescribeKeyPairs",
"ec2:DescribeVpcAttribute",
"ec2:DescribeVpcs",
"ec2:DescribeInternetGateways",
"ec2:DescribeNetworkInterfaces",
"ec2:DescribeTags",
"elasticloadbalancing:*",
"autoscaling:*",
"cloudwatch:*",
"s3:*",
"cloudformation:*",
"rds:*",
"sns:*",
"iam:PassRole",
"iam:CreateServiceLinkedRole",
"iam:GetRole",
"iam:ListInstanceProfiles",
"iam:ListRoles",
"iam:ListServerCertificates",
"iam:GetServerCertificate",
"logs:CreateLogStream",
"logs:PutLogEvents",
"logs:CreateLogGroup",
"logs:DescribeLogStreams",
"logs:DescribeLogGroups",
"codecommit:*",
"codedeploy:*",
"codebuild:*",
"cloudfront:*",
"acm:*",
"route53:*",
"ecr:*",
"kms:ListAliases",
"kms:ListKeys",
"logs:DescribeMetricFilters",
"logs:DeleteLogGroup",
"logs:GetLogEvents",
"logs:DeleteMetricFilter",
"logs:DescribeSubscriptionFilters",
"logs:DescribeExportTasks",
"logs:DescribeDestinations",
"logs:DescribeLogGroups",
"logs:DescribeLogStreams",
"logs:FilterLogEvents",
"logs:ListTagsLogGroup",
"logs:PutRetentionPolicy",
"logs:TagLogGroup"
],
"Resource": "*"
},
{
"Effect": "Allow",
"Action": [
"iam:CreateRole",
"iam:CreateInstanceProfile",
"iam:AddRoleToInstanceProfile",
"iam:PutRolePolicy",
"iam:PassRole"
],
"Resource": "arn:aws:iam::*:role/aws-elasticbeanstalk-*"
},
{
"Effect": "Allow",
"Action": [
"iam:CreateServiceLinkedRole",
"iam:DeleteServiceLinkedRole",
"iam:GetServiceLinkedRoleDeletionStatus"
],
"Resource": "*",
"Condition": {
"StringEquals": {
"iam:AWSServiceName": "elasticbeanstalk.amazonaws.com"
}
}
},
{
"Effect": "Allow",
"Action": [
"s3:GetObject",
"s3:PutObject",
"s3:DeleteObject",
"s3:ListBucket",
"s3:GetBucketLocation",
"s3:CreateBucket",
"s3:DeleteBucket",
"s3:PutBucketPolicy"
],
"Resource": [
"arn:aws:s3:::elasticbeanstalk-*",
"arn:aws:s3:::codepipeline-*",
"arn:aws:s3:::elasticbeanstalk-env-resources-*",
"arn:aws:s3:::elasticbeanstalk-*-environment-resources/*"
]
},
{
"Effect": "Allow",
"Action": "ec2:*",
"Resource": "*"
}
]
}
Editor is loading...
Leave a Comment