diff --git a/TEST.TF b/TEST.TF new file mode 100644 index 0000000000..df4ebc876f --- /dev/null +++ b/TEST.TF @@ -0,0 +1,15 @@ +resource "aws_iam_policy" "wildcard_principal" { + name = "bad-wildcard-policy" + description = "This policy allows any principal to assume a role." + + policy = jsonencode({ + Version = "2012-10-17", + Statement = [ + { + Effect = "Allow", + Action = "sts:AssumeRole", + Principal = "*" + } + ] + }) +} diff --git a/terraform/gcp/gcs.tf b/terraform/gcp/gcs.tf index cd6dbac2a8..3a870ae2d6 100644 --- a/terraform/gcp/gcs.tf +++ b/terraform/gcp/gcs.tf @@ -18,4 +18,4 @@ resource "google_storage_bucket_iam_binding" "allow_public_read" { bucket = google_storage_bucket.terragoat_website.id members = ["allUsers"] role = "roles/storage.objectViewer" -} \ No newline at end of file +}