Skip to content

Commit a175cc6

Browse files
committed
CCM-15020: Permissions fixes
1 parent c7ae3a4 commit a175cc6

1 file changed

Lines changed: 5 additions & 2 deletions

File tree

infrastructure/terraform/components/dl/sns_topic.tf

Lines changed: 5 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -13,8 +13,11 @@ data "aws_iam_policy_document" "sns_topic_policy_document" {
1313
effect = "Allow"
1414

1515
principals {
16-
type = "AWS"
17-
identifiers = ["arn:aws:iam::${var.shared_infra_account_id}:root"]
16+
type = "AWS"
17+
identifiers = [
18+
"arn:aws:iam::${var.shared_infra_account_id}:role/nhs-*-events-digital-letters-reporting",
19+
"arn:aws:sts::${var.shared_infra_account_id}:assumed-role/nhs-*-events-digital-letters-reporting/*"
20+
]
1821
}
1922

2023
actions = [

0 commit comments

Comments
 (0)