Skip to content

Commit 10ff2bd

Browse files
committed
Some permissions to check roles
1 parent f8b2a7d commit 10ff2bd

File tree

1 file changed

+3
-0
lines changed

1 file changed

+3
-0
lines changed

modules/response_actions.cft.yaml

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -265,6 +265,9 @@ Resources:
265265
- Effect: Allow
266266
Action:
267267
- iam:GetRole
268+
- iam:GetRolePolicy
269+
- iam:ListRolePolicies
270+
- iam:ListAttachedRolePolicies
268271
Resource:
269272
- !Sub "arn:${Partition}:iam::${AWS::AccountId}:role/sysdig-secure-ra-${NameSuffix}-*"
270273
Tags:

0 commit comments

Comments
 (0)