@@ -87,11 +87,17 @@ data "aws_iam_policy_document" "artefacts_bucket_policy" {
8787 " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_dev . value } :role/aws-reserved/sso.amazonaws.com/${ var . aws_region } /AWSReservedSSO_DOS-FtRS-RW-Developer_b0ffd523c3b8ddb9" ,
8888 " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_dev . value } :role/aws-reserved/sso.amazonaws.com/${ var . aws_region } /AWSReservedSSO_DOS-FtRS-RW-Infrastructure_e5f5de072b3e7cf8" ,
8989 " ${ data . aws_iam_role . app_github_runner_iam_role . arn } " ,
90+ " ${ data . aws_iam_role . account_github_runner_iam_role . arn } " ,
9091 " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_prod . value } :role/${ var . repo_name } -${ var . app_github_runner_role_name } " ,
92+ " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_prod . value } :role/${ var . repo_name } -${ var . account_github_runner_role_name } " ,
9193 " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_test . value } :role/${ var . repo_name } -ref-${ var . app_github_runner_role_name } " ,
94+ " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_test . value } :role/${ var . repo_name } -ref-${ var . account_github_runner_role_name } " ,
9295 " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_test . value } :role/${ var . repo_name } -int-${ var . app_github_runner_role_name } " ,
96+ " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_test . value } :role/${ var . repo_name } -int-${ var . account_github_runner_role_name } " ,
9397 " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_test . value } :role/${ var . repo_name } -test-${ var . app_github_runner_role_name } " ,
94- " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_dev . value } :role/${ var . repo_name } -dev-${ var . app_github_runner_role_name } "
98+ " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_test . value } :role/${ var . repo_name } -test-${ var . account_github_runner_role_name } " ,
99+ " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_dev . value } :role/${ var . repo_name } -dev-${ var . app_github_runner_role_name } " ,
100+ " arn:aws:iam::${ data . aws_ssm_parameter . aws_account_id_dev . value } :role/${ var . repo_name } -dev-${ var . account_github_runner_role_name } "
95101 ]
96102 }
97103 actions = [
0 commit comments