fix(terraform): let the plan role read bucket website config

The S3 provider refreshes GetBucketWebsite. The plan role was denied on the three Forgejo buckets.
This commit is contained in:
Adam Moussa 2026-09-29 19:22:34 -04:00
parent 8360cfb1db
commit d511861296
No known key found for this signature in database

View file

@ -602,6 +602,7 @@ data "aws_iam_policy_document" "hcptf_plan_refresh" {
"s3:GetBucketRequestPayment", "s3:GetBucketRequestPayment",
"s3:GetBucketTagging", "s3:GetBucketTagging",
"s3:GetBucketVersioning", "s3:GetBucketVersioning",
"s3:GetBucketWebsite",
"s3:GetEncryptionConfiguration", "s3:GetEncryptionConfiguration",
"s3:GetLifecycleConfiguration", "s3:GetLifecycleConfiguration",
"s3:GetReplicationConfiguration", "s3:GetReplicationConfiguration",