Skip to content

Commit 0de5cfe

Browse files
committed
chore: add ssm role
1 parent d07a3db commit 0de5cfe

File tree

1 file changed

+10
-0
lines changed

1 file changed

+10
-0
lines changed

tests/uat/aws/account/federation.tf

Lines changed: 10 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -116,6 +116,16 @@ data "aws_iam_policy_document" "github_actions_permissions" {
116116
resources = ["*"]
117117
}
118118

119+
# SSM permissions for EKS nodes
120+
statement {
121+
sid = "SSMNodePermissions"
122+
effect = "Allow"
123+
actions = [
124+
"ssm:GetParameter"
125+
]
126+
resources = ["*"]
127+
}
128+
119129
# EKS Cluster permissions
120130
statement {
121131
sid = "EKSClusterPermissions"

0 commit comments

Comments
 (0)