Skip to content

Commit 652f2b9

Browse files
committed
fix: add missing IAM action for emptyRoutesDefaultVPCSecurityGroup option
1 parent 69c64a6 commit 652f2b9

15 files changed

+15
-0
lines changed

cmd/clusterawsadm/cloudformation/bootstrap/cluster_api_controller.go

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -148,6 +148,7 @@ func (t Template) ControllersPolicy() *iamv1.PolicyDocument {
148148
"ec2:ModifyNetworkInterfaceAttribute",
149149
"ec2:ModifySubnetAttribute",
150150
"ec2:ReleaseAddress",
151+
"ec2:RevokeSecurityGroupEgress",
151152
"ec2:RevokeSecurityGroupIngress",
152153
"ec2:RunInstances",
153154
"ec2:TerminateInstances",

cmd/clusterawsadm/cloudformation/bootstrap/fixtures/customsuffix.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -208,6 +208,7 @@ Resources:
208208
- ec2:ModifyNetworkInterfaceAttribute
209209
- ec2:ModifySubnetAttribute
210210
- ec2:ReleaseAddress
211+
- ec2:RevokeSecurityGroupEgress
211212
- ec2:RevokeSecurityGroupIngress
212213
- ec2:RunInstances
213214
- ec2:TerminateInstances

cmd/clusterawsadm/cloudformation/bootstrap/fixtures/default.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -208,6 +208,7 @@ Resources:
208208
- ec2:ModifyNetworkInterfaceAttribute
209209
- ec2:ModifySubnetAttribute
210210
- ec2:ReleaseAddress
211+
- ec2:RevokeSecurityGroupEgress
211212
- ec2:RevokeSecurityGroupIngress
212213
- ec2:RunInstances
213214
- ec2:TerminateInstances

cmd/clusterawsadm/cloudformation/bootstrap/fixtures/with_all_secret_backends.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -214,6 +214,7 @@ Resources:
214214
- ec2:ModifyNetworkInterfaceAttribute
215215
- ec2:ModifySubnetAttribute
216216
- ec2:ReleaseAddress
217+
- ec2:RevokeSecurityGroupEgress
217218
- ec2:RevokeSecurityGroupIngress
218219
- ec2:RunInstances
219220
- ec2:TerminateInstances

cmd/clusterawsadm/cloudformation/bootstrap/fixtures/with_allow_assume_role.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -208,6 +208,7 @@ Resources:
208208
- ec2:ModifyNetworkInterfaceAttribute
209209
- ec2:ModifySubnetAttribute
210210
- ec2:ReleaseAddress
211+
- ec2:RevokeSecurityGroupEgress
211212
- ec2:RevokeSecurityGroupIngress
212213
- ec2:RunInstances
213214
- ec2:TerminateInstances

cmd/clusterawsadm/cloudformation/bootstrap/fixtures/with_bootstrap_user.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -214,6 +214,7 @@ Resources:
214214
- ec2:ModifyNetworkInterfaceAttribute
215215
- ec2:ModifySubnetAttribute
216216
- ec2:ReleaseAddress
217+
- ec2:RevokeSecurityGroupEgress
217218
- ec2:RevokeSecurityGroupIngress
218219
- ec2:RunInstances
219220
- ec2:TerminateInstances

cmd/clusterawsadm/cloudformation/bootstrap/fixtures/with_custom_bootstrap_user.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -214,6 +214,7 @@ Resources:
214214
- ec2:ModifyNetworkInterfaceAttribute
215215
- ec2:ModifySubnetAttribute
216216
- ec2:ReleaseAddress
217+
- ec2:RevokeSecurityGroupEgress
217218
- ec2:RevokeSecurityGroupIngress
218219
- ec2:RunInstances
219220
- ec2:TerminateInstances

cmd/clusterawsadm/cloudformation/bootstrap/fixtures/with_different_instance_profiles.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -208,6 +208,7 @@ Resources:
208208
- ec2:ModifyNetworkInterfaceAttribute
209209
- ec2:ModifySubnetAttribute
210210
- ec2:ReleaseAddress
211+
- ec2:RevokeSecurityGroupEgress
211212
- ec2:RevokeSecurityGroupIngress
212213
- ec2:RunInstances
213214
- ec2:TerminateInstances

cmd/clusterawsadm/cloudformation/bootstrap/fixtures/with_eks_console.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -208,6 +208,7 @@ Resources:
208208
- ec2:ModifyNetworkInterfaceAttribute
209209
- ec2:ModifySubnetAttribute
210210
- ec2:ReleaseAddress
211+
- ec2:RevokeSecurityGroupEgress
211212
- ec2:RevokeSecurityGroupIngress
212213
- ec2:RunInstances
213214
- ec2:TerminateInstances

cmd/clusterawsadm/cloudformation/bootstrap/fixtures/with_eks_default_roles.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -208,6 +208,7 @@ Resources:
208208
- ec2:ModifyNetworkInterfaceAttribute
209209
- ec2:ModifySubnetAttribute
210210
- ec2:ReleaseAddress
211+
- ec2:RevokeSecurityGroupEgress
211212
- ec2:RevokeSecurityGroupIngress
212213
- ec2:RunInstances
213214
- ec2:TerminateInstances

0 commit comments

Comments
 (0)