Skip to content

Commit

Permalink
chore: Allow reading all parameters in AWS instance policy
Browse files Browse the repository at this point in the history
Bug: 370963662
Change-Id: I7027cad7f6d4146e8ff8f7c157d0179bf22b9f31
GitOrigin-RevId: b3f58db8eba38301bbbc044275862b801d3e2712
  • Loading branch information
lusayaa authored and copybara-github committed Oct 16, 2024
1 parent 99e875b commit 3474db5
Showing 1 changed file with 1 addition and 1 deletion.
Original file line number Diff line number Diff line change
Expand Up @@ -61,7 +61,7 @@ data "aws_iam_policy_document" "instance_policy_doc" {
sid = "AllowInstancesToReadParameters"
actions = ["ssm:GetParameter"]
effect = "Allow"
resources = setunion(var.server_parameter_arns, var.coordinator_parameter_arns, var.metrics_collector_endpoint_arns, var.sharding_key_regex_arns, var.consented_debug_token_arns)
resources = ["*"]
}
statement {
sid = "AllowInstancesToAssumeRole"
Expand Down

0 comments on commit 3474db5

Please sign in to comment.