From df63fe2010a1b175482ce7ce82bf5c3f695a2268 Mon Sep 17 00:00:00 2001 From: dmoini Date: Thu, 28 Dec 2023 13:55:31 -0800 Subject: [PATCH] Replaced "events:DescribeRule" with "events:ListRules" permission for capability resource handler (#20) --- aws-b2bi-capability/aws-b2bi-capability.json | 8 ++++---- aws-b2bi-capability/resource-role.yaml | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/aws-b2bi-capability/aws-b2bi-capability.json b/aws-b2bi-capability/aws-b2bi-capability.json index 374612d..4243511 100644 --- a/aws-b2bi-capability/aws-b2bi-capability.json +++ b/aws-b2bi-capability/aws-b2bi-capability.json @@ -226,9 +226,7 @@ "permissions": [ "b2bi:CreateCapability", "b2bi:TagResource", - "s3:GetObject", - "s3:ListBucket", - "events:DescribeRule", + "events:ListRules", "events:PutRule", "events:PutTargets", "logs:CreateLogDelivery", @@ -239,7 +237,9 @@ "logs:DescribeResourcePolicies", "logs:ListLogDeliveries", "logs:PutLogEvents", - "logs:PutResourcePolicy" + "logs:PutResourcePolicy", + "s3:GetObject", + "s3:ListBucket" ] }, "read": { diff --git a/aws-b2bi-capability/resource-role.yaml b/aws-b2bi-capability/resource-role.yaml index da9b21a..a362ca9 100644 --- a/aws-b2bi-capability/resource-role.yaml +++ b/aws-b2bi-capability/resource-role.yaml @@ -38,7 +38,7 @@ Resources: - "b2bi:TagResource" - "b2bi:UntagResource" - "b2bi:UpdateCapability" - - "events:DescribeRule" + - "events:ListRules" - "events:PutRule" - "events:PutTargets" - "logs:CreateLogDelivery"