@@ -16,7 +16,52 @@ The solution is based on a CloudFormation template that you need to deploy for e
1616
1717## Prerequisites
1818
19- * You must have an AWS Account with the necessary permissions to create and manage resources.
19+ You must have an AWS Account with the the following permissions:
20+
21+ - CloudFormation
22+ - cloudformation: CreateStack
23+ - cloudformation: DescribeStackEvents
24+ - cloudformation: DescribeStackResources
25+ - cloudformation: GetTemplate
26+ - cloudformation: ListStackResources
27+ - cloudformation: UpdateStack
28+ - cloudformation: DeleteStack
29+
30+ - IAM
31+ - iam: CreateRole
32+ - iam: PutRolePolicy
33+ - iam: AttachRolePolicy
34+ - iam: PassRole
35+ - iam: DetachRolePolicy
36+ - iam: DeleteRolePolicy
37+ - iam: DeleteRole
38+
39+ - Lambda
40+ - lambda: CreateFunction
41+ - lambda: InvokeFunction
42+ - lambda: DeleteFunction
43+ - lambda: GetFunction
44+ - lambda: UpdateFunctionCode
45+ - lambda: UpdateFunctionConfiguration
46+
47+ - EC2
48+ - ec2: CreateVpcEndpoint
49+ - ec2: CreateNetworkInterface
50+ - ec2: DescribeNetworkInterfaces
51+ - ec2: DeleteNetworkInterface
52+ - ec2: AssignPrivateIpAddresses
53+ - ec2: UnassignPrivateIpAddresses
54+ - ec2: DeleteVpcEndpoints
55+
56+ - Secrets Manager
57+ - secretsmanager: CreateSecret
58+ - secretsmanager: GetSecretValue
59+ - secretsmanager: DeleteSecret
60+
61+ - CloudWatch
62+ - cloudwatch: PutMetricData
63+ - cloudwatch: PutDashboard
64+ - cloudwatch: DeleteDashboards
2065
2166## Usage
2267
0 commit comments