fix(additions-policy): Updated multi-org ProwlerRole.yaml (#1123)

This commit is contained in:
ChrisGoKim
2022-05-03 05:34:12 -04:00
committed by GitHub
parent 59abd2bd5b
commit 295bb74acf

View File

@@ -75,30 +75,20 @@ Resources:
Effect: Allow Effect: Allow
Resource: "*" Resource: "*"
Action: Action:
- access-analyzer:List*
- apigateway:Get*
- apigatewayv2:Get*
- aws-marketplace:ViewSubscriptions
- dax:ListTables
- ds:ListAuthorizedApplications - ds:ListAuthorizedApplications
- ds:DescribeRoles
- ec2:GetEbsEncryptionByDefault - ec2:GetEbsEncryptionByDefault
- ecr:Describe* - ecr:Describe*
- lambda:GetAccountSettings - elasticfilesystem:DescribeBackupPolicy
- lambda:GetFunctionConfiguration - glue:GetConnections
- lambda:GetLayerVersionPolicy - glue:GetSecurityConfiguration
- lambda:GetPolicy - glue:SearchTables
- opsworks-cm:Describe* - lambda:GetFunction
- opsworks:Describe* - s3:GetAccountPublicAccessBlock
- secretsmanager:ListSecretVersionIds - shield:DescribeProtection
- sns:List* - shield:GetSubscriptionState
- sqs:ListQueueTags - ssm:GetDocument
- states:ListActivities
- support:Describe* - support:Describe*
- tag:GetTagKeys - tag:GetTagKeys
- shield:GetSubscriptionState
- shield:DescribeProtection
- elasticfilesystem:DescribeBackupPolicy
- PolicyName: Prowler-S3-Reports - PolicyName: Prowler-S3-Reports
PolicyDocument: PolicyDocument:
Version: 2012-10-17 Version: 2012-10-17