s3 policy

This commit is contained in:
Jun-te Kim 2026-02-10 19:12:34 +00:00
parent 526d1a7963
commit a8d89dc286

View file

@ -366,7 +366,7 @@ module "postcode_splitter_s3_read" {
policy_name = "PostcodeSplitterReadS3"
policy_description = "Allow postcode splitter Lambda to read from retrofit-data bucket"
bucket_arns = ["arn:aws:s3:::retrofit-data-${var.stage}"]
actions = ["s3:GetObject"]
actions = ["s3:GetObject", "s3:ListBucket"]
resource_paths = ["/*"]
}