Skip to content

Commit 1671f74

Browse files
committed
Locking down the resource path
1 parent dcaef9b commit 1671f74

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

infrastructure/policies.tf

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -54,7 +54,7 @@ resource "aws_iam_policy" "production_support" {
5454
"transfer:CreateUser"
5555
],
5656
Resource = [
57-
"*"
57+
"arn:aws:transfer:eu-west-2:${data.aws_caller_identity.current.account_id}:*"
5858
]
5959
}
6060
]

0 commit comments

Comments
 (0)