Skip to content

Commit 222b2f6

Browse files
committed
Add s3:GetObject permission for CAPA
For upcoming feature kubernetes-sigs/cluster-api-provider-aws#4667
1 parent 02b8460 commit 222b2f6

File tree

1 file changed

+11
-10
lines changed

1 file changed

+11
-10
lines changed

capa-controller-role/capa-controller-policy.json

Lines changed: 11 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -17,9 +17,9 @@
1717
"ec2:CreateSubnet",
1818
"ec2:CreateTags",
1919
"ec2:CreateVpc",
20-
"ec2:CreateVpcEndpoint",
20+
"ec2:CreateVpcEndpoint",
2121
"ec2:ModifyVpcAttribute",
22-
"ec2:ModifyVpcEndpoint",
22+
"ec2:ModifyVpcEndpoint",
2323
"ec2:DeleteInternetGateway",
2424
"ec2:DeleteNatGateway",
2525
"ec2:DeleteNetworkInterface",
@@ -28,7 +28,7 @@
2828
"ec2:DeleteSubnet",
2929
"ec2:DeleteTags",
3030
"ec2:DeleteVpc",
31-
"ec2:DeleteVpcEndpoints",
31+
"ec2:DeleteVpcEndpoints",
3232
"ec2:DetachNetworkInterface",
3333
"ec2:DescribeAccountAttributes",
3434
"ec2:DescribeAddresses",
@@ -46,35 +46,36 @@
4646
"ec2:DescribeSubnets",
4747
"ec2:DescribeVpcs",
4848
"ec2:DescribeVpcAttribute",
49-
"ec2:DescribeVpcEndpoints",
49+
"ec2:DescribeVpcEndpoints",
5050
"ec2:DescribeVolumes",
5151
"ec2:DetachInternetGateway",
5252
"ec2:DisassociateRouteTable",
5353
"ec2:DisassociateAddress",
54-
"ec2:DisassociateVpcCidrBlock",
54+
"ec2:DisassociateVpcCidrBlock",
5555
"ec2:ModifyInstanceAttribute",
5656
"ec2:ModifyNetworkInterfaceAttribute",
5757
"ec2:ModifySubnetAttribute",
5858
"ec2:ReleaseAddress",
5959
"ec2:RevokeSecurityGroupIngress",
60-
"ec2:RevokeSecurityGroupEgress",
60+
"ec2:RevokeSecurityGroupEgress",
6161
"ec2:RunInstances",
6262
"ec2:TerminateInstances",
6363
"tag:GetResources",
6464
"elasticloadbalancing:*",
6565
"autoscaling:DescribeAutoScalingGroups",
6666
"autoscaling:DescribeInstanceRefreshes",
67-
"autoscaling:SuspendProcesses",
68-
"autoscaling:DescribeAutoScalingInstances",
69-
"autoscaling:TerminateInstanceInAutoScalingGroup",
67+
"autoscaling:SuspendProcesses",
68+
"autoscaling:DescribeAutoScalingInstances",
69+
"autoscaling:TerminateInstanceInAutoScalingGroup",
7070
"ec2:CreateLaunchTemplate",
7171
"ec2:CreateLaunchTemplateVersion",
7272
"ec2:DescribeLaunchTemplates",
7373
"ec2:DescribeLaunchTemplateVersions",
7474
"ec2:DeleteLaunchTemplate",
7575
"ec2:DeleteLaunchTemplateVersions",
76-
"s3:CreateBucket",
76+
"s3:CreateBucket",
7777
"s3:DeleteBucket",
78+
"s3:GetObject",
7879
"s3:PutObject",
7980
"s3:DeleteObject",
8081
"s3:PutBucketPolicy",

0 commit comments

Comments
 (0)