@@ -497,17 +497,21 @@ const expectedAWSLoadBalancerControllerPolicyDocument = `{
497
497
"ec2:DescribeTags",
498
498
"ec2:GetCoipPoolUsage",
499
499
"ec2:DescribeCoipPools",
500
+ "ec2:GetSecurityGroupsForVpc",
501
+ "ec2:DescribeIpamPools",
500
502
"elasticloadbalancing:DescribeLoadBalancers",
501
503
"elasticloadbalancing:DescribeLoadBalancerAttributes",
502
504
"elasticloadbalancing:DescribeListeners",
503
- "elasticloadbalancing:DescribeListenerAttributes",
504
505
"elasticloadbalancing:DescribeListenerCertificates",
505
506
"elasticloadbalancing:DescribeSSLPolicies",
506
507
"elasticloadbalancing:DescribeRules",
507
508
"elasticloadbalancing:DescribeTargetGroups",
508
509
"elasticloadbalancing:DescribeTargetGroupAttributes",
509
510
"elasticloadbalancing:DescribeTargetHealth",
510
- "elasticloadbalancing:DescribeTags"
511
+ "elasticloadbalancing:DescribeTags",
512
+ "elasticloadbalancing:DescribeTrustStores",
513
+ "elasticloadbalancing:DescribeListenerAttributes",
514
+ "elasticloadbalancing:DescribeCapacityReservation"
511
515
],
512
516
"Effect": "Allow",
513
517
"Resource": "*"
@@ -667,15 +671,17 @@ const expectedAWSLoadBalancerControllerPolicyDocument = `{
667
671
},
668
672
{
669
673
"Action": [
670
- "elasticloadbalancing:ModifyListenerAttributes",
671
674
"elasticloadbalancing:ModifyLoadBalancerAttributes",
672
675
"elasticloadbalancing:SetIpAddressType",
673
676
"elasticloadbalancing:SetSecurityGroups",
674
677
"elasticloadbalancing:SetSubnets",
675
678
"elasticloadbalancing:DeleteLoadBalancer",
676
679
"elasticloadbalancing:ModifyTargetGroup",
677
680
"elasticloadbalancing:ModifyTargetGroupAttributes",
678
- "elasticloadbalancing:DeleteTargetGroup"
681
+ "elasticloadbalancing:DeleteTargetGroup",
682
+ "elasticloadbalancing:ModifyListenerAttributes",
683
+ "elasticloadbalancing:ModifyCapacityReservation",
684
+ "elasticloadbalancing:ModifyIpPools"
679
685
],
680
686
"Condition": {
681
687
"Null": {
@@ -729,7 +735,8 @@ const expectedAWSLoadBalancerControllerPolicyDocument = `{
729
735
"elasticloadbalancing:ModifyListener",
730
736
"elasticloadbalancing:AddListenerCertificates",
731
737
"elasticloadbalancing:RemoveListenerCertificates",
732
- "elasticloadbalancing:ModifyRule"
738
+ "elasticloadbalancing:ModifyRule",
739
+ "elasticloadbalancing:SetRulePriorities"
733
740
],
734
741
"Effect": "Allow",
735
742
"Resource": "*"
0 commit comments