Skip to content

Commit a8278c8

Browse files
authored
Merge pull request #847 from fluxcd/int-perm-change
oci/int: Grant new permissions needed by AWS infra
2 parents 8c4af78 + 1af36ba commit a8278c8

File tree

1 file changed

+12
-0
lines changed

1 file changed

+12
-0
lines changed

oci/tests/integration/README.md

+12
Original file line numberDiff line numberDiff line change
@@ -155,16 +155,22 @@ provisioning the infrastructure and running the tests:
155155
"eks:UpdateNodegroupVersion",
156156
"iam:AttachRolePolicy",
157157
"iam:CreateOpenIDConnectProvider",
158+
"iam:CreatePolicy",
158159
"iam:CreateRole",
159160
"iam:DeleteOpenIDConnectProvider",
161+
"iam:DeletePolicy",
160162
"iam:DeleteRole",
161163
"iam:DetachRolePolicy",
162164
"iam:GetOpenIDConnectProvider",
165+
"iam:GetPolicy",
166+
"iam:GetPolicyVersion",
163167
"iam:GetRole",
164168
"iam:ListAttachedRolePolicies",
165169
"iam:ListInstanceProfilesForRole",
170+
"iam:ListPolicyVersions",
166171
"iam:ListRolePolicies",
167172
"iam:TagOpenIDConnectProvider",
173+
"iam:TagPolicy",
168174
"iam:TagRole",
169175
"ssm:GetParameters"
170176
],
@@ -294,16 +300,22 @@ module "aws_gh_actions" {
294300
"eks:UpdateNodegroupVersion",
295301
"iam:AttachRolePolicy",
296302
"iam:CreateOpenIDConnectProvider",
303+
"iam:CreatePolicy",
297304
"iam:CreateRole",
298305
"iam:DeleteOpenIDConnectProvider",
306+
"iam:DeletePolicy",
299307
"iam:DeleteRole",
300308
"iam:DetachRolePolicy",
301309
"iam:GetOpenIDConnectProvider",
310+
"iam:GetPolicy",
311+
"iam:GetPolicyVersion",
302312
"iam:GetRole",
303313
"iam:ListAttachedRolePolicies",
304314
"iam:ListInstanceProfilesForRole",
315+
"iam:ListPolicyVersions",
305316
"iam:ListRolePolicies",
306317
"iam:TagOpenIDConnectProvider",
318+
"iam:TagPolicy",
307319
"iam:TagRole",
308320
"ssm:GetParameters"
309321
]

0 commit comments

Comments
 (0)