We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent c7ae3a4 commit a175cc6Copy full SHA for a175cc6
1 file changed
infrastructure/terraform/components/dl/sns_topic.tf
@@ -13,8 +13,11 @@ data "aws_iam_policy_document" "sns_topic_policy_document" {
13
effect = "Allow"
14
15
principals {
16
- type = "AWS"
17
- identifiers = ["arn:aws:iam::${var.shared_infra_account_id}:root"]
+ type = "AWS"
+ identifiers = [
18
+ "arn:aws:iam::${var.shared_infra_account_id}:role/nhs-*-events-digital-letters-reporting",
19
+ "arn:aws:sts::${var.shared_infra_account_id}:assumed-role/nhs-*-events-digital-letters-reporting/*"
20
+ ]
21
}
22
23
actions = [
0 commit comments