@@ -37,17 +37,17 @@ Therefore, there needs to be an VPC endpoint for all the AWS services that the L
3737
3838<table >
3939<tr ><th >Service</td ><th >Actions</td ><th >Resources</th ></tr >
40- <tr ><td >Fsx</td ><td >fsx:DescribeFileSystems</td ><td >\* </td ></tr >
41- <tr ><td rowspan =" 3 " >ec2</td ><td >DescribeNetworkInterfaces</td ><td >\* </td ></tr >
42- <tr ><td >CreateNetworkInterface</td ><td >arn:aws:ec2:< ; region> ; :< ; accountID> ; :\* </td ></tr >
43- <tr ><td >DeleteNetworkInterface</td ><td >arn:aws:ec2:< ; region> ; :< ; accountID> ; :\* </td ></tr >
44- <tr ><td rowspan =" 3 " >CloudWatch Logs</td ><td >CreateLogGroup</td ><td rowspan =" 3 " >arn:aws:logs:< ; region> ; :< ; accountID> ; :log-group:\* </td ></tr >
40+ <tr ><td >Fsx</td ><td >fsx:DescribeFileSystems</td ><td >&# 42 ; </td ></tr >
41+ <tr ><td rowspan =" 3 " >ec2</td ><td >DescribeNetworkInterfaces</td ><td >&# 42 ; </td ></tr >
42+ <tr ><td >CreateNetworkInterface</td ><td >arn:aws:ec2:< ; region> ; :< ; accountID> ; :&# 42 ; </td ></tr >
43+ <tr ><td >DeleteNetworkInterface</td ><td >arn:aws:ec2:< ; region> ; :< ; accountID> ; :&# 42 ; </td ></tr >
44+ <tr ><td rowspan =" 3 " >CloudWatch Logs</td ><td >CreateLogGroup</td ><td rowspan =" 3 " >arn:aws:logs:< ; region> ; :< ; accountID> ; :log-group:&# 42 ; </td ></tr >
4545<tr ><td >CreateLogStream</td ></tr >
4646<tr ><td >PutLogEvents</td ></tr >
47- <tr ><td rowspan =" 3 " >s3</td ><td > ListBucket</td ><td > arn:aws:s3:< ; region> ; :< ; accountID> ; :* </td ></tr >
48- <tr ><td >GetObject</td ><td rowspan =" 2 " >arn:aws:s3:< ; region>:< ; accountID> ; :*/* </td ></tr >
47+ <tr ><td rowspan =" 3 " >s3</td ><td > ListBucket</td ><td > arn:aws:s3:< ; region> ; :< ; accountID> ; :&# 42 ; </td ></tr >
48+ <tr ><td >GetObject</td ><td rowspan =" 2 " >arn:aws:s3:< ; region>:< ; accountID> ; :&# 42 ; / &# 42 ; </td ></tr >
4949<tr ><td >PutObject</td ></tr >
50- <tr ><td >Secrets Manager</td ><td > GetSecretValue </td ><td >arn:aws:secretsmanager:< ; region> ; :< ; accountID> ; :secret:< ; secretName> \* ;</td ></tr >
50+ <tr ><td >Secrets Manager</td ><td > GetSecretValue </td ><td >arn:aws:secretsmanager:< ; region> ; :< ; accountID> ; :secret:< ; secretName> &# 42 ; ;</td ></tr >
5151</table >
5252Where:
5353
0 commit comments