We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 4fc7048 commit 6a80452Copy full SHA for 6a80452
infra/aws-github-oidc/main.tf
@@ -28,12 +28,13 @@ data "aws_iam_policy_document" "assume_role" {
28
}
29
30
31
-data "aws_iam_policy_document" "lambda_policy" {
+data "aws_iam_policy_document" "iam_policy" {
32
statement {
33
actions = [
34
"lambda:PublishLayerVersion",
35
"lambda:UpdateFunctionCode",
36
"lambda:UpdateFunctionConfiguration",
37
+ "logs:CreateLogGroup",
38
]
39
effect = "Allow"
40
resources = ["*"]
@@ -53,7 +54,7 @@ resource "aws_iam_role" "this" {
53
54
assume_role_policy = data.aws_iam_policy_document.assume_role.json
55
56
inline_policy {
- name = "lambda_policy"
57
- policy = data.aws_iam_policy_document.lambda_policy.json
+ name = "iam-policy"
58
+ policy = data.aws_iam_policy_document.iam_policy.json
59
60
0 commit comments