Skip to content

Commit 1a354d9

Browse files
authored
updating permissions for lambda
1 parent 401310b commit 1a354d9

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

source/cloudformation/s3auditor_cf.template

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -725,6 +725,7 @@ Resources:
725725
Principal:
726726
Service:
727727
- lambda.amazonaws.com
728+
- apigateway.amazonaws.com
728729
Condition: {}
729730
Action:
730731
- 'sts:AssumeRole'
@@ -735,6 +736,7 @@ Resources:
735736
- 'arn:aws:iam::aws:policy/AmazonOpenSearchServiceFullAccess'
736737
- 'arn:aws:iam::aws:policy/AmazonSSMReadOnlyAccess'
737738
- 'arn:aws:iam::aws:policy/AmazonSQSFullAccess'
739+
- 'arn:aws:iam::aws:policy/service-role/AWSLambdaRole'
738740
Policies:
739741
- PolicyName: s3AuditorWriteToExportBucket
740742
PolicyDocument:

0 commit comments

Comments
 (0)