Skip to content

Commit 3dd0139

Browse files
authored
Merge pull request #201 from ruby-no-kai/AWSManagementConsoleBasicUserAccess
AWSManagementConsoleBasicUserAccess
2 parents 516fb35 + 8a5f63f commit 3dd0139

3 files changed

Lines changed: 17 additions & 0 deletions

File tree

tf/admin-iam/kaigi_staff.tf

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -39,6 +39,11 @@ resource "aws_iam_role_policy" "KaigiStaff_StreamingStaff" {
3939
policy = data.aws_iam_policy_document.StreamingStaff.json
4040
}
4141

42+
resource "aws_iam_role_policy_attachment" "KaigiStaff_AWSManagementConsoleBasicUserAccess" {
43+
role = aws_iam_role.KaigiStaff.name
44+
policy_arn = data.aws_iam_policy.AWSManagementConsoleBasicUserAccess.arn
45+
}
46+
4247
#resource "aws_iam_role_policy" "KaigiStaff" {
4348
# role = aws_iam_role.KaigiStaff.name
4449
# policy = data.aws_iam_policy_document.KaigiStaff.json

tf/admin-iam/noc_admin.tf

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -45,6 +45,10 @@ resource "aws_iam_policy" "NocAdminBase" {
4545
}
4646

4747
data "aws_iam_policy_document" "NocAdminBase" {
48+
source_policy_documents = [
49+
data.aws_iam_policy.AWSManagementConsoleBasicUserAccess.policy,
50+
]
51+
4852
statement {
4953
effect = "Allow"
5054
actions = [
@@ -255,3 +259,7 @@ data "aws_iam_policy_document" "NocAdmin_iam-with-boundary" {
255259
}
256260
}
257261
}
262+
263+
data "aws_iam_policy" "AWSManagementConsoleBasicUserAccess" {
264+
arn = "arn:aws:iam::aws:policy/AWSManagementConsoleBasicUserAccess"
265+
}

tf/admin-iam/streaming_staff.tf

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -100,5 +100,9 @@ data "aws_iam_policy_document" "StreamingStaff" {
100100
]
101101
resources = ["*"]
102102
}
103+
}
103104

105+
resource "aws_iam_role_policy_attachment" "StreamingStaff_AWSManagementConsoleBasicUserAccess" {
106+
role = aws_iam_role.StreamingStaff.name
107+
policy_arn = data.aws_iam_policy.AWSManagementConsoleBasicUserAccess.arn
104108
}

0 commit comments

Comments
 (0)