add lambda:get* to prowler-additions-policy

The check: 7.60 [extra760] Find secrets in Lambda functions code (Not Scored) (Not part of CIS benchmark) 

errors by default, with the following:
An error occurred (AccessDeniedException) when calling the GetFunction operation: User: user/prowler is not authorized to perform: lambda:GetFunction on resource: arn:aws:lambda:eu-west-2:347708466071:function:ApiSimpleDelayDDMonitor

Adding this policy to be successfully run that check.
This commit is contained in:
Dominick Bellizzi
2019-12-18 14:53:09 -08:00
committed by GitHub
parent d2b3e5ecdc
commit cc5da42797

View File

@@ -50,6 +50,7 @@
"gamelift:list*",
"glacier:list*",
"importexport:listjobs",
"lambda:get*",
"lex:getbotaliases",
"lex:getbotchannelassociations",
"lex:getbots",