@@ -155,16 +155,22 @@ provisioning the infrastructure and running the tests:
155
155
" eks:UpdateNodegroupVersion" ,
156
156
" iam:AttachRolePolicy" ,
157
157
" iam:CreateOpenIDConnectProvider" ,
158
+ " iam:CreatePolicy" ,
158
159
" iam:CreateRole" ,
159
160
" iam:DeleteOpenIDConnectProvider" ,
161
+ " iam:DeletePolicy" ,
160
162
" iam:DeleteRole" ,
161
163
" iam:DetachRolePolicy" ,
162
164
" iam:GetOpenIDConnectProvider" ,
165
+ " iam:GetPolicy" ,
166
+ " iam:GetPolicyVersion" ,
163
167
" iam:GetRole" ,
164
168
" iam:ListAttachedRolePolicies" ,
165
169
" iam:ListInstanceProfilesForRole" ,
170
+ " iam:ListPolicyVersions" ,
166
171
" iam:ListRolePolicies" ,
167
172
" iam:TagOpenIDConnectProvider" ,
173
+ " iam:TagPolicy" ,
168
174
" iam:TagRole" ,
169
175
" ssm:GetParameters"
170
176
],
@@ -294,16 +300,22 @@ module "aws_gh_actions" {
294
300
"eks:UpdateNodegroupVersion",
295
301
"iam:AttachRolePolicy",
296
302
"iam:CreateOpenIDConnectProvider",
303
+ "iam:CreatePolicy",
297
304
"iam:CreateRole",
298
305
"iam:DeleteOpenIDConnectProvider",
306
+ "iam:DeletePolicy",
299
307
"iam:DeleteRole",
300
308
"iam:DetachRolePolicy",
301
309
"iam:GetOpenIDConnectProvider",
310
+ "iam:GetPolicy",
311
+ "iam:GetPolicyVersion",
302
312
"iam:GetRole",
303
313
"iam:ListAttachedRolePolicies",
304
314
"iam:ListInstanceProfilesForRole",
315
+ "iam:ListPolicyVersions",
305
316
"iam:ListRolePolicies",
306
317
"iam:TagOpenIDConnectProvider",
318
+ "iam:TagPolicy",
307
319
"iam:TagRole",
308
320
"ssm:GetParameters"
309
321
]
0 commit comments