feat: adding more read permissions to kms key policy
This commit is contained in:
@@ -641,7 +641,10 @@ data "aws_iam_policy_document" "base" {
|
|||||||
"kms:ListAliases",
|
"kms:ListAliases",
|
||||||
"kms:ListKeyPolicies",
|
"kms:ListKeyPolicies",
|
||||||
"kms:ListKeys",
|
"kms:ListKeys",
|
||||||
"kms:ListResourceTags"
|
"kms:ListResourceTags",
|
||||||
|
"kms:GetKeyRotationStatus",
|
||||||
|
"kms:ListKeyRotations",
|
||||||
|
"kms:ListGrants"
|
||||||
],
|
],
|
||||||
"Resource" : "*"
|
"Resource" : "*"
|
||||||
},
|
},
|
||||||
|
|||||||
Reference in New Issue
Block a user