Skip to content

Commit 61f09f1

Browse files
committed
Only Allow ServerlessRepo Access to Artifact Store
1 parent 88d6799 commit 61f09f1

File tree

1 file changed

+2
-1
lines changed

1 file changed

+2
-1
lines changed

cicd.template.yml

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -52,7 +52,8 @@ Resources:
5252
Action: s3:GetObject
5353
Resource:
5454
- !Sub arn:aws:s3:::${ArtifactStore}/templates/*
55-
Principal: "*"
55+
Principal:
56+
Service: serverlessrepo.amazonaws.com
5657

5758
BuildProject:
5859
Type: AWS::CodeBuild::Project

0 commit comments

Comments
 (0)