mirror of
https://github.com/prowler-cloud/prowler.git
synced 2025-12-19 05:17:47 +00:00
fix(additions-policy): Updated multi-org ProwlerRole.yaml (#1123)
This commit is contained in:
@@ -75,30 +75,20 @@ Resources:
|
||||
Effect: Allow
|
||||
Resource: "*"
|
||||
Action:
|
||||
- access-analyzer:List*
|
||||
- apigateway:Get*
|
||||
- apigatewayv2:Get*
|
||||
- aws-marketplace:ViewSubscriptions
|
||||
- dax:ListTables
|
||||
- ds:ListAuthorizedApplications
|
||||
- ds:DescribeRoles
|
||||
- ec2:GetEbsEncryptionByDefault
|
||||
- ecr:Describe*
|
||||
- lambda:GetAccountSettings
|
||||
- lambda:GetFunctionConfiguration
|
||||
- lambda:GetLayerVersionPolicy
|
||||
- lambda:GetPolicy
|
||||
- opsworks-cm:Describe*
|
||||
- opsworks:Describe*
|
||||
- secretsmanager:ListSecretVersionIds
|
||||
- sns:List*
|
||||
- sqs:ListQueueTags
|
||||
- states:ListActivities
|
||||
- elasticfilesystem:DescribeBackupPolicy
|
||||
- glue:GetConnections
|
||||
- glue:GetSecurityConfiguration
|
||||
- glue:SearchTables
|
||||
- lambda:GetFunction
|
||||
- s3:GetAccountPublicAccessBlock
|
||||
- shield:DescribeProtection
|
||||
- shield:GetSubscriptionState
|
||||
- ssm:GetDocument
|
||||
- support:Describe*
|
||||
- tag:GetTagKeys
|
||||
- shield:GetSubscriptionState
|
||||
- shield:DescribeProtection
|
||||
- elasticfilesystem:DescribeBackupPolicy
|
||||
- PolicyName: Prowler-S3-Reports
|
||||
PolicyDocument:
|
||||
Version: 2012-10-17
|
||||
|
||||
Reference in New Issue
Block a user