Skip to content

Commit

Permalink
CCL-497 aws_iam_policy_document
Browse files Browse the repository at this point in the history
  • Loading branch information
mynampatinaveen committed Sep 5, 2024
1 parent 54b2e4b commit 96fdb5b
Showing 1 changed file with 14 additions and 2 deletions.
16 changes: 14 additions & 2 deletions modules/products/static-site/storage.tf
Original file line number Diff line number Diff line change
Expand Up @@ -41,8 +41,7 @@ data "aws_iam_policy_document" "static_site_iam_storage_policy_document" {
identifiers = ["cloudfront.amazonaws.com"]
}
actions = [
"s3:GetObject",
"s3:ListBucket"
"s3:GetObject"
]
resources = [
"arn:aws:s3:::${aws_s3_bucket.static_site.id}/*"
Expand All @@ -53,6 +52,19 @@ data "aws_iam_policy_document" "static_site_iam_storage_policy_document" {
values = [aws_cloudfront_distribution.static_site_distribution.arn]
}
}
statement {
actions = [
"s3:ListBucket"
]
resources = [
"arn:aws:s3:::${aws_s3_bucket.static_site.id}"
]
condition {
test = "StringEquals"
variable = "aws:SourceArn"
values = [aws_cloudfront_distribution.static_site_distribution.arn]
}
}
}

resource "aws_s3_bucket_policy" "static_site_policy" {
Expand Down

0 comments on commit 96fdb5b

Please sign in to comment.