From c1f883b518067445f0064aeff8b120908ee17e02 Mon Sep 17 00:00:00 2001 From: Khalim Conn-Kowlessar Date: Thu, 17 Apr 2025 16:54:24 +0100 Subject: [PATCH] re-specifying s3 permissions for engine lambga --- serverless.yml | 7 +------ 1 file changed, 1 insertion(+), 6 deletions(-) diff --git a/serverless.yml b/serverless.yml index 5b0d1f79..5c421452 100644 --- a/serverless.yml +++ b/serverless.yml @@ -75,15 +75,10 @@ functions: - Fn::GetAtt: [ EngineQueue, Arn ] - Effect: Allow Action: - - s3:GetObject - - s3:ListBucket + - s3:* Resource: - arn:aws:s3:::${env:PLAN_TRIGGER_BUCKET} - arn:aws:s3:::${env:PLAN_TRIGGER_BUCKET}/* - - Effect: Allow - Action: - - s3:* - Resource: - arn:aws:s3:::${env:PREDICTIONS_BUCKET} - arn:aws:s3:::${env:PREDICTIONS_BUCKET}/* - arn:aws:s3:::${env:DATA_BUCKET}