Files
dsk-iac/terraform/iam/policies/modules/policies.tf
2024-01-26 17:20:37 +09:00

27 lines
535 B
HCL

resource "aws_iam_policy" "policy" {
name = "DSK_LambdaExecute"
path = "/"
policy = jsonencode({
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Action": [
"logs:CreateLogGroup",
"logs:CreateLogStream",
"logs:PutLogEvents"
],
"Resource": "arn:aws:logs:*:*:*"
},
{
"Effect": "Allow",
"Action": [
"ec2:Start*",
"ec2:Stop*"
],
"Resource": "*"
}
]
})
}