File tree Expand file tree Collapse file tree 5 files changed +10
-2
lines changed
Expand file tree Collapse file tree 5 files changed +10
-2
lines changed Original file line number Diff line number Diff line change @@ -31,6 +31,7 @@ No requirements.
3131| Name | Description |
3232| ------| -------------|
3333| <a name =" output_api_base_url " ></a > [ api\_ base\_ url] ( #output\_ api\_ base\_ url ) | n/a |
34+ | <a name =" output_client_ssm_path_prefix " ></a > [ client\_ ssm\_ path\_ prefix] ( #output\_ client\_ ssm\_ path\_ prefix ) | n/a |
3435| <a name =" output_cognito_user_pool_client_id " ></a > [ cognito\_ user\_ pool\_ client\_ id] ( #output\_ cognito\_ user\_ pool\_ client\_ id ) | n/a |
3536| <a name =" output_cognito_user_pool_id " ></a > [ cognito\_ user\_ pool\_ id] ( #output\_ cognito\_ user\_ pool\_ id ) | n/a |
3637| <a name =" output_download_bucket_name " ></a > [ download\_ bucket\_ name] ( #output\_ download\_ bucket\_ name ) | n/a |
Original file line number Diff line number Diff line change @@ -63,6 +63,7 @@ No requirements.
6363| Name | Description |
6464| ------| -------------|
6565| <a name =" output_api_base_url " ></a > [ api\_ base\_ url] ( #output\_ api\_ base\_ url ) | n/a |
66+ | <a name =" output_client_ssm_path_prefix " ></a > [ client\_ ssm\_ path\_ prefix] ( #output\_ client\_ ssm\_ path\_ prefix ) | n/a |
6667| <a name =" output_download_bucket_name " ></a > [ download\_ bucket\_ name] ( #output\_ download\_ bucket\_ name ) | n/a |
6768| <a name =" output_download_bucket_regional_domain_name " ></a > [ download\_ bucket\_ regional\_ domain\_ name] ( #output\_ download\_ bucket\_ regional\_ domain\_ name ) | n/a |
6869| <a name =" output_internal_bucket_name " ></a > [ internal\_ bucket\_ name] ( #output\_ internal\_ bucket\_ name ) | n/a |
Original file line number Diff line number Diff line change @@ -83,9 +83,11 @@ data "aws_iam_policy_document" "create_letter_template_lambda_policy" {
8383 statement {
8484 sid = " AllowSSMParameterRead"
8585 effect = " Allow"
86+
8687 actions = [
8788 " ssm:GetParameter" ,
8889 ]
90+
8991 resources = [
9092 " arn:aws:ssm:${ var . region } :${ var . aws_account_id } :parameter${ local . client_ssm_path_prefix } /*" ,
9193 ]
Original file line number Diff line number Diff line change @@ -68,11 +68,13 @@ data "aws_iam_policy_document" "create_template_lambda_policy" {
6868 statement {
6969 sid = " AllowSSMParameterRead"
7070 effect = " Allow"
71+
7172 actions = [
7273 " ssm:GetParameter" ,
7374 ]
75+
7476 resources = [
75- " arn:aws:ssm:${ var . region } :${ var . aws_account_id } :parameter${ local . client_ssm_path_prefix } /*" ,
77+ " arn:aws:ssm:${ var . region } :${ var . aws_account_id } :parameter${ local . client_ssm_path_prefix } /*" ,
7678 ]
7779 }
7880}
Original file line number Diff line number Diff line change @@ -81,11 +81,13 @@ data "aws_iam_policy_document" "request_proof_lambda_policy" {
8181 statement {
8282 sid = " AllowSSMParameterRead"
8383 effect = " Allow"
84+
8485 actions = [
8586 " ssm:GetParameter" ,
8687 ]
88+
8789 resources = [
88- " arn:aws:ssm:${ var . region } :${ var . aws_account_id } :parameter${ local . client_ssm_path_prefix } /*" ,
90+ " arn:aws:ssm:${ var . region } :${ var . aws_account_id } :parameter${ local . client_ssm_path_prefix } /*" ,
8991 ]
9092 }
9193}
You can’t perform that action at this time.
0 commit comments