summaryrefslogtreecommitdiff
path: root/hacking/aws_config/testing_policies/devops-policy.json
blob: b07ce88542d6c5046ec30c3f7e3e97202d6a6f89 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
{
    "Version": "2012-10-17",
    "Statement": [
      {
        "Sid": "AllowCodeCommitModuleTests",
        "Effect": "Allow",
        "Action": [
          "codecommit:ListRepositories",
          "codecommit:*Repository",
          "codecommit:*RepositoryDescription"
        ],
        "Resource": [
          "*"
        ]
      },
      {
        "Sid": "AllowCloudformationTests",
        "Effect": "Allow",
        "Action": [
          "cloudformation:CreateChangeSet",
          "cloudformation:CreateStack",
          "cloudformation:DeleteChangeSet",
          "cloudformation:DeleteStack",
          "cloudformation:DescribeChangeSet",
          "cloudformation:DescribeStackEvents",
          "cloudformation:DescribeStacks",
          "cloudformation:GetStackPolicy",
          "cloudformation:GetTemplate",
          "cloudformation:ListChangeSets",
          "cloudformation:ListStackResources",
          "cloudformation:UpdateStack",
          "cloudformation:UpdateTerminationProtection"
        ],
        "Resource": [
          "*"
        ]
      }
    ]
}