mirror of
https://github.com/Sea-Haven-Industries/forgejo.git
synced 2026-10-02 10:53:19 +00:00
fix(terraform): let the plan role read object tags and retention
The S3 provider refreshes tagging, ACL, attributes, and Object Lock on the Lambda zip.
This commit is contained in:
parent
566a669c7b
commit
8eb19b4e55
1 changed files with 5 additions and 0 deletions
|
|
@ -606,6 +606,11 @@ data "aws_iam_policy_document" "hcptf_plan_refresh" {
|
||||||
"s3:GetEncryptionConfiguration",
|
"s3:GetEncryptionConfiguration",
|
||||||
"s3:GetLifecycleConfiguration",
|
"s3:GetLifecycleConfiguration",
|
||||||
"s3:GetObject",
|
"s3:GetObject",
|
||||||
|
"s3:GetObjectAcl",
|
||||||
|
"s3:GetObjectAttributes",
|
||||||
|
"s3:GetObjectLegalHold",
|
||||||
|
"s3:GetObjectRetention",
|
||||||
|
"s3:GetObjectTagging",
|
||||||
"s3:GetReplicationConfiguration",
|
"s3:GetReplicationConfiguration",
|
||||||
"s3:ListBucket",
|
"s3:ListBucket",
|
||||||
]
|
]
|
||||||
|
|
|
||||||
Loading…
Add table
Reference in a new issue