Skip to content

Commit 7de669c

Browse files
authored
Merge pull request #13 from Levetty/feature/add-cspm
add: backupやesなどの権限追加
2 parents b83c305 + d75f7f6 commit 7de669c

2 files changed

Lines changed: 11 additions & 3 deletions

File tree

README.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ terraform aws module for cloudbase
99
```
1010
module "cloudbase" {
1111
source = "Levetty/cloudbase/aws"
12-
version = "0.9.0"
12+
version = "0.10.0"
1313
1414
external_id = "xxx" # required
1515
role_name = "Cloudbase" # optional: default value is "Cloudbase"
@@ -26,7 +26,7 @@ module "cloudbase" {
2626
```
2727
module "cloudbase" {
2828
source = "Levetty/cloudbase/aws"
29-
version = "0.9.0"
29+
version = "0.10.0"
3030
3131
external_id = "xxx" # required
3232
role_name = "Cloudbase" # optional: default value is "Cloudbase"
@@ -43,7 +43,7 @@ module "cloudbase" {
4343
```
4444
module "cloudbase" {
4545
source = "Levetty/cloudbase/aws"
46-
version = "0.9.0"
46+
version = "0.10.0"
4747
4848
external_id = "xxx" # required
4949
role_name = "Cloudbase" # optional: default value is "Cloudbase"

policies/cspm_read.json

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -14,13 +14,18 @@
1414
"athena:GetQueryExecution",
1515
"athena:GetWorkGroup",
1616
"auditmanager:GetSettings",
17+
"backup:GetBackupPlan",
18+
"backup:GetBackupSelection",
1719
"backup:DescribeRegionSettings",
1820
"backup:ListBackupPlans",
1921
"backup:ListBackupVaults",
22+
"backup:ListBackupSelections",
23+
"backup:ListTags",
2024
"codeartifact:ListDomains",
2125
"codebuild:ListSourceCredentials",
2226
"codeconnections:ListConnections",
2327
"codepipeline:ListWebhooks",
28+
"codepipeline:ListTagsForResource",
2429
"connect:ListInstances",
2530
"databrew:ListJobs",
2631
"dax:DescribeClusters",
@@ -32,6 +37,7 @@
3237
"elasticTranscoder:ListJobsByPipeline",
3338
"elasticfilesystem:DescribeAccessPoints",
3439
"elastictranscoder:ListPipelines",
40+
"es:ListVpcEndpointAccess",
3541
"finspace:ListEnvironments",
3642
"forecast:ListDatasets",
3743
"forecast:ListForecastExportJobs",
@@ -104,12 +110,14 @@
104110
"timestream:DescribeEndpoints",
105111
"timestream:ListDatabases",
106112
"voiceid:ListDomains",
113+
"waf-regional:GetRule",
107114
"waf-regional:GetLoggingConfiguration",
108115
"waf-regional:GetRuleGroup",
109116
"waf-regional:ListRateBasedRules",
110117
"waf-regional:ListRuleGroups",
111118
"waf-regional:ListRules",
112119
"waf:GetLoggingConfiguration",
120+
"waf:GetRule",
113121
"waf:GetRuleGroup",
114122
"waf:ListRuleGroups",
115123
"waf:ListRules",

0 commit comments

Comments
 (0)