Skip to content

Commit 0d0a04c

Browse files
committed
Replace dynamic pattern with wildcard pattern in nag suppressions
1 parent 7d8e331 commit 0d0a04c

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

packages/cdk/nagSuppressions.ts

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -95,7 +95,7 @@ export const nagSuppressions = (stack: Stack) => {
9595
id: "AwsSolutions-IAM5",
9696
reason: "Bedrock Knowledge Base requires these permissions to access S3 documents and OpenSearch collection.",
9797
appliesTo: [
98-
`Resource::<StorageDocsBucket${stackName.replace(/-/g, "")}Docs*.Arn>/*`,
98+
"Resource::<StorageDocsBucket*Docs*.Arn>/*",
9999
"Action::bedrock:Delete*",
100100
"Resource::arn:aws:bedrock:eu-west-2:undefined:knowledge-base/*",
101101
"Resource::arn:aws:bedrock:eu-west-2:591291862413:knowledge-base/*",

0 commit comments

Comments
 (0)