Преглед на файлове

Merge pull request #54 from mdr-engineering/feature/ftd_MSOCI-1314_AddSupportPolicyToTerraformer

Adds 'AWSSupportAccess' Policy to mdr_terraformer
Frederick Damstra преди 5 години
родител
ревизия
a14621c017
променени са 2 файла, в които са добавени 10 реда и са изтрити 0 реда
  1. 5 0
      submodules/iam/child_account_roles/role-mdr_terraformer.tf
  2. 5 0
      submodules/iam/common_services_roles/role-mdr_terraformer.tf

+ 5 - 0
submodules/iam/child_account_roles/role-mdr_terraformer.tf

@@ -9,3 +9,8 @@ resource aws_iam_role_policy_attachment "mdr_terraformer-mdr_terraformer" {
   role       = aws_iam_role.mdr_terraformer.name 
   policy_arn = module.standard_iam_policies.arns["mdr_terraformer"]
 }
+
+resource aws_iam_role_policy_attachment "mdr_terraformer-AWSSupportAccess" {
+  role       = aws_iam_role.mdr_terraformer.name
+  policy_arn = "arn:${data.aws_partition.current.partition}:iam::aws:policy/AWSSupportAccess"
+}

+ 5 - 0
submodules/iam/common_services_roles/role-mdr_terraformer.tf

@@ -9,3 +9,8 @@ resource aws_iam_role_policy_attachment "mdr_terraformer-mdr_terraformer" {
   role       = aws_iam_role.mdr_terraformer.name 
   policy_arn = module.standard_iam_policies.arns["mdr_terraformer"]
 }
+
+resource aws_iam_role_policy_attachment "mdr_terraformer-AWSSupportAccess" {
+  role       = aws_iam_role.mdr_terraformer.name 
+  policy_arn = "arn:${data.aws_partition.current.partition}:iam::aws:policy/AWSSupportAccess"
+}