소스 검색

Merge pull request #54 from mdr-engineering/feature/ftd_MSOCI-1314_AddSupportPolicyToTerraformer

Adds 'AWSSupportAccess' Policy to mdr_terraformer
Frederick Damstra 5 년 전
부모
커밋
a14621c017
2개의 변경된 파일10개의 추가작업 그리고 0개의 파일을 삭제
  1. 5 0
      submodules/iam/child_account_roles/role-mdr_terraformer.tf
  2. 5 0
      submodules/iam/common_services_roles/role-mdr_terraformer.tf

+ 5 - 0
submodules/iam/child_account_roles/role-mdr_terraformer.tf

@@ -9,3 +9,8 @@ resource aws_iam_role_policy_attachment "mdr_terraformer-mdr_terraformer" {
   role       = aws_iam_role.mdr_terraformer.name 
   policy_arn = module.standard_iam_policies.arns["mdr_terraformer"]
 }
+
+resource aws_iam_role_policy_attachment "mdr_terraformer-AWSSupportAccess" {
+  role       = aws_iam_role.mdr_terraformer.name
+  policy_arn = "arn:${data.aws_partition.current.partition}:iam::aws:policy/AWSSupportAccess"
+}

+ 5 - 0
submodules/iam/common_services_roles/role-mdr_terraformer.tf

@@ -9,3 +9,8 @@ resource aws_iam_role_policy_attachment "mdr_terraformer-mdr_terraformer" {
   role       = aws_iam_role.mdr_terraformer.name 
   policy_arn = module.standard_iam_policies.arns["mdr_terraformer"]
 }
+
+resource aws_iam_role_policy_attachment "mdr_terraformer-AWSSupportAccess" {
+  role       = aws_iam_role.mdr_terraformer.name 
+  policy_arn = "arn:${data.aws_partition.current.partition}:iam::aws:policy/AWSSupportAccess"
+}