File tree Expand file tree Collapse file tree 1 file changed +14
-2
lines changed
org-formation/300-account-defaults Expand file tree Collapse file tree 1 file changed +14
-2
lines changed Original file line number Diff line number Diff line change @@ -2,6 +2,15 @@ AWSTemplateFormatVersion: '2010-09-09'
22Description : Enables executing a Bedrock model
33
44Resources :
5+ bedrockAgentResourcesBucket :
6+ Type : AWS::S3::Bucket
7+ Properties :
8+ BucketName : bedrock-agent-resources
9+ PublicAccessBlockConfiguration :
10+ BlockPublicAcls : true
11+ BlockPublicPolicy : true
12+ IgnorePublicAcls : true
13+ RestrictPublicBuckets : true
514# https://docs.aws.amazon.com/bedrock/latest/userguide/agents-permissions.html
615 bedrockAgentRole :
716 Type : AWS::IAM::Role
@@ -37,8 +46,11 @@ Resources:
3746 - " s3:GetObjectVersion"
3847 - " s3:ListBucket"
3948 Resource :
40- - !Sub " arn:aws:s3:::*"
41- - !Sub " arn:aws:s3:::*/*"
49+ # delete first two lines after migrating
50+ - !Sub " arn:aws:s3:::lolrus-bukkit"
51+ - !Sub " arn:aws:s3:::lolrus-bukkit/*"
52+ - !Sub " arn:aws:s3:::bedrock-agent-resources"
53+ - !Sub " arn:aws:s3:::bedrock-agent-resources/*"
4254
4355Outputs :
4456 BedrockAgentRoleArn :
You can’t perform that action at this time.
0 commit comments