Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

POL-1362 Flexera Policy CloudFormation Template Automation #2651

Open
wants to merge 168 commits into
base: master
Choose a base branch
from
Open
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
168 commits
Select commit Hold shift + click to select a range
732ba5d
update
XOmniverse Mar 28, 2024
c1139d9
fix
XOmniverse Mar 28, 2024
de63c78
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Mar 28, 2024
f31bdcb
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Mar 28, 2024
f1efbe0
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Mar 29, 2024
c7418b0
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Mar 29, 2024
88e9304
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Mar 29, 2024
f245ad7
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Mar 29, 2024
09f7a1d
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Mar 29, 2024
738db1b
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 1, 2024
e5f6ec4
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 2, 2024
4e71e8b
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 2, 2024
1d8b882
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 2, 2024
f52328d
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 3, 2024
39e8cb9
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 4, 2024
323df85
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 8, 2024
572d97b
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 10, 2024
f0af998
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 10, 2024
a28ec3d
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 10, 2024
9bd65b9
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 15, 2024
98ccf43
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 16, 2024
208ddf7
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 16, 2024
e7767f2
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 17, 2024
66fbcb8
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 18, 2024
e2ef148
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 18, 2024
7f4a5a3
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 18, 2024
0e5293d
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 19, 2024
1d9a4a4
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 22, 2024
b799cc7
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 22, 2024
02d4aa6
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 23, 2024
5ce4da5
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 24, 2024
a42bf60
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 26, 2024
f98a7f2
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 26, 2024
4a6e6e5
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 29, 2024
368c9da
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 30, 2024
7dfe259
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 30, 2024
1ab7b95
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Apr 30, 2024
0754ff4
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 1, 2024
67a2084
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 2, 2024
a982026
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 3, 2024
9adf853
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 3, 2024
fa45c07
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 6, 2024
9798847
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 6, 2024
98f4443
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 7, 2024
7a86663
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 8, 2024
e3dee38
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 8, 2024
b69e670
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 9, 2024
7cadb9d
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 9, 2024
ad1744d
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 10, 2024
10dbbc4
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 13, 2024
88fbc95
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 14, 2024
6bcb57c
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 14, 2024
09d2116
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 15, 2024
0158083
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 16, 2024
66bc1c2
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 20, 2024
63e1602
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 20, 2024
e17a02c
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 21, 2024
c1cc974
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 22, 2024
b5bc6f3
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 22, 2024
ec75e97
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 30, 2024
1cb4926
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 30, 2024
4cf06de
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse May 31, 2024
0230fae
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 3, 2024
f3e2031
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 3, 2024
98f4217
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 4, 2024
c17e410
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 5, 2024
b017672
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 7, 2024
ab5629c
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 10, 2024
a82f6b7
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 11, 2024
2025aa5
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 11, 2024
37eef59
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 13, 2024
391c9be
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 13, 2024
d6c63d3
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 14, 2024
7e4a04b
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 14, 2024
01aa513
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 17, 2024
75e924f
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 17, 2024
75063a8
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 21, 2024
6c6bcc8
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 21, 2024
95d75c0
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 24, 2024
755e613
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 24, 2024
4c2fe38
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 24, 2024
edc04d3
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 26, 2024
b975488
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 26, 2024
4809927
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 26, 2024
e6d34be
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 26, 2024
35602c4
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 27, 2024
dc20ed5
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 27, 2024
cb2dc12
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jun 28, 2024
209db7b
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 1, 2024
b05ff68
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 1, 2024
01b057a
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 2, 2024
e612090
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 2, 2024
088af1b
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 8, 2024
f14609a
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 8, 2024
c474f94
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 9, 2024
add397f
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 10, 2024
322c6a5
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 15, 2024
39fe39d
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 16, 2024
6f9acad
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 16, 2024
11012e8
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 17, 2024
28fa3e8
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 19, 2024
d281bdd
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 22, 2024
a6c92d3
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 23, 2024
94c5add
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 24, 2024
d1aa94f
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 26, 2024
0ac1e7d
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 29, 2024
8a219db
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 29, 2024
6562bed
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 31, 2024
74ae3a4
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Jul 31, 2024
8032a7f
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 1, 2024
4c99ce0
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 1, 2024
6f6ec72
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 2, 2024
fd171a2
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 5, 2024
45630f7
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 9, 2024
4a99d74
update
XOmniverse Aug 9, 2024
3b1c72e
fix
XOmniverse Aug 9, 2024
f0bae6d
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 9, 2024
5526d06
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 12, 2024
5ba0f63
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 12, 2024
149099b
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 12, 2024
3d68121
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 12, 2024
e126509
update
XOmniverse Aug 13, 2024
6ddd523
update
XOmniverse Aug 13, 2024
6ae60c3
fix
XOmniverse Aug 13, 2024
cb57b0b
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 13, 2024
ce7d180
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 15, 2024
a989c71
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 18, 2024
b423284
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 18, 2024
861baf0
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 20, 2024
cc4b4ba
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 26, 2024
5b6f1de
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 27, 2024
c806617
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 28, 2024
45e0671
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 28, 2024
1d00ed3
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Aug 28, 2024
84f66f2
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 3, 2024
a62b5af
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 3, 2024
9f5d414
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 3, 2024
b271c89
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 3, 2024
02301d1
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 4, 2024
1f7529e
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 4, 2024
f1419be
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 5, 2024
d925789
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 9, 2024
482f80c
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 12, 2024
9c2688b
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 13, 2024
63ff2b6
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 15, 2024
6222c12
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 17, 2024
9ba4d62
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 17, 2024
7436078
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 19, 2024
17c1be7
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 20, 2024
1c55ed0
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 20, 2024
2ba0a42
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 20, 2024
47906e9
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 20, 2024
9b69de6
Merge branch 'master' of github-xomniverse:flexera-public/policy_temp…
XOmniverse Sep 20, 2024
13c8cf5
first
XOmniverse Sep 20, 2024
69f4c2b
update
XOmniverse Sep 20, 2024
5004333
update
XOmniverse Sep 20, 2024
7a0c0a4
update
XOmniverse Sep 20, 2024
abbc1b3
update
XOmniverse Sep 20, 2024
f490f39
update
XOmniverse Sep 20, 2024
36488d1
update
XOmniverse Sep 20, 2024
acbb4aa
update
XOmniverse Sep 20, 2024
624172d
update
XOmniverse Sep 23, 2024
6262628
update
XOmniverse Sep 23, 2024
e2a9fa0
update
XOmniverse Sep 23, 2024
02549ad
update
XOmniverse Sep 24, 2024
9f2069a
update
XOmniverse Sep 24, 2024
833bc18
update
XOmniverse Sep 24, 2024
77c0d59
Merge branch 'master' into POL-1362-cft-automation
XOmniverse Oct 15, 2024
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
45 changes: 45 additions & 0 deletions .github/workflows/generate-aws-cloudformation-template.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,45 @@
name: Generate Meta Parent Policy Templates

on:
# Trigger this workflow on pushes to master
push:
branches:
- master

# Workflow dispatch trigger allows manually running workflow
workflow_dispatch:
branches:
- master

jobs:
meta-parent-policy-templates:
name: "Generate AWS CloudFormation Template"
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v3
with:
fetch-depth: 0 # Speed up checkout by not fetching history

- uses: ruby/setup-ruby@v1

- name: Generate AWS CloudFormation Template
working-directory: tools/cloudformation-template
run: |
ruby aws_cft_generator.rb

- name: Create Pull Request
id: cpr
uses: peter-evans/create-pull-request@v4
with:
commit-message: "Update AWS CloudFormation Template"
title: "Update AWS CloudFormation Template"
body: "Update AWS CloudFormation Template from GitHub Actions Workflow [${{ github.workflow }}](https://github.com/${{ github.repository }}/actions/runs/${{ github.run_id }})"
branch: "task/update-aws-cloudformation-template"
delete-branch: true
labels: "automation"

- name: Check outputs
if: ${{ steps.cpr.outputs.pull-request-number }}
run: |
echo "Pull Request Number - ${{ steps.cpr.outputs.pull-request-number }}"
echo "Pull Request URL - ${{ steps.cpr.outputs.pull-request-url }}"
3 changes: 3 additions & 0 deletions .spellignore
Original file line number Diff line number Diff line change
Expand Up @@ -585,6 +585,9 @@ FSM
ByteCount
PacketCount
balancers
OUs
README
readme
backfill
FNMS
CBI
Expand Down
4 changes: 2 additions & 2 deletions compliance/aws/untagged_resources/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -52,7 +52,7 @@ This Policy Template uses [Credentials](https://docs.flexera.com/flexera/EN/Auto
- `ec2:DescribeRegions`
- `tag:GetResources`
- `tag:TagResources`*
- `organizations:TagResources`*
- `organizations:TagResource`*

\* Only required for taking action (adding tags); the policy will still function in a read-only capacity without these permissions.

Expand All @@ -69,7 +69,7 @@ This Policy Template uses [Credentials](https://docs.flexera.com/flexera/EN/Auto
"ec2:DescribeRegions",
"tag:GetResources",
"tag:TagResources",
"organizations:TagResources"
"organizations:TagResource"
],
"Resource": "*"
}
Expand Down
4 changes: 2 additions & 2 deletions cost/aws/s3_storage_policy/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -36,7 +36,7 @@ For administrators [creating and managing credentials](https://docs.flexera.com/
- `s3:ListAllMyBuckets`
- `s3:GetBucketLocation`
- `s3:GetBucketTagging`
- `s3:GetBucketIntelligentTieringConfiguration`
- `s3:GetIntelligentTieringConfiguration`
- `sts:GetCallerIdentity`

Example IAM Permission Policy:
Expand All @@ -51,7 +51,7 @@ For administrators [creating and managing credentials](https://docs.flexera.com/
"s3:ListAllMyBuckets",
"s3:GetBucketLocation",
"s3:GetBucketTagging",
"s3:GetBucketIntelligentTieringConfiguration",
"s3:GetIntelligentTieringConfiguration",
"sts:GetCallerIdentity"
],
"Resource": "*"
Expand Down
86 changes: 10 additions & 76 deletions data/policy_permissions_list/master_policy_permissions_list.json
Original file line number Diff line number Diff line change
Expand Up @@ -650,7 +650,7 @@
"description": "Only required for taking action (adding tags); the policy will still function in a read-only capacity without these permissions."
},
{
"name": "organizations:TagResources",
"name": "organizations:TagResource",
"read_only": false,
"required": false,
"description": "Only required for taking action (adding tags); the policy will still function in a read-only capacity without these permissions."
Expand Down Expand Up @@ -2510,7 +2510,7 @@
"required": true
},
{
"name": "s3:GetBucketIntelligentTieringConfiguration",
"name": "s3:GetIntelligentTieringConfiguration",
"read_only": true,
"required": true
},
Expand Down Expand Up @@ -2821,72 +2821,6 @@
}
]
},
{
"id": "./cost/aws/superseded_instances/aws_superseded_instances.pt",
"name": "AWS Superseded EC2 Instances",
"version": "2.3.0",
"providers": [
{
"name": "aws",
"permissions": [
{
"name": "ec2:DescribeRegions",
"read_only": true,
"required": true
},
{
"name": "ec2:DescribeInstances",
"read_only": true,
"required": true
},
{
"name": "ec2:DescribeInstanceStatus",
"read_only": false,
"required": false,
"description": "Only required for taking action; the policy will still function in a read-only capacity without these permissions."
},
{
"name": "ec2:DescribeTags",
"read_only": true,
"required": true
},
{
"name": "ec2:ModifyInstanceAttribute",
"read_only": false,
"required": false,
"description": "Only required for taking action; the policy will still function in a read-only capacity without these permissions."
},
{
"name": "ec2:StartInstances",
"read_only": false,
"required": false,
"description": "Only required for taking action; the policy will still function in a read-only capacity without these permissions."
},
{
"name": "ec2:StopInstances",
"read_only": false,
"required": false,
"description": "Only required for taking action; the policy will still function in a read-only capacity without these permissions."
},
{
"name": "sts:GetCallerIdentity",
"read_only": true,
"required": true
}
]
},
{
"name": "flexera",
"permissions": [
{
"name": "billing_center_viewer",
"read_only": true,
"required": true
}
]
}
]
},
{
"id": "./cost/aws/unused_albs/aws_unused_albs.pt",
"name": "AWS Unused Application Load Balancers",
Expand Down Expand Up @@ -8432,7 +8366,7 @@
"required": true
},
{
"name": "s3:ListBuckets",
"name": "s3:ListAllMyBuckets",
"read_only": true,
"required": true
},
Expand Down Expand Up @@ -8479,7 +8413,7 @@
"required": true
},
{
"name": "s3:ListBuckets",
"name": "s3:ListAllMyBuckets",
"read_only": true,
"required": true
},
Expand Down Expand Up @@ -8532,7 +8466,7 @@
"required": true
},
{
"name": "s3:ListBuckets",
"name": "s3:ListAllMyBuckets",
"read_only": true,
"required": true
},
Expand All @@ -8547,7 +8481,7 @@
"required": true
},
{
"name": "s3:GetPublicAccessBlock",
"name": "s3:GetBucketPublicAccessBlock",
"read_only": true,
"required": true
}
Expand Down Expand Up @@ -8579,7 +8513,7 @@
"required": true
},
{
"name": "s3:ListBuckets",
"name": "s3:ListAllMyBuckets",
"read_only": true,
"required": true
},
Expand Down Expand Up @@ -8626,7 +8560,7 @@
"required": true
},
{
"name": "s3:ListBuckets",
"name": "s3:ListAllMyBuckets",
"read_only": true,
"required": true
},
Expand All @@ -8641,12 +8575,12 @@
"required": true
},
{
"name": "s3:GetBucketEncryption",
"name": "s3:GetEncryptionConfiguration",
"read_only": true,
"required": true
},
{
"name": "s3:PutBucketEncryption",
"name": "s3:PutEncryptionConfiguration",
"read_only": false,
"required": false,
"description": "Only required for taking action; the policy will still function in a read-only capacity without these permissions."
Expand Down
63 changes: 10 additions & 53 deletions data/policy_permissions_list/master_policy_permissions_list.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -368,7 +368,7 @@
required: false
description: Only required for taking action (adding tags); the policy will
still function in a read-only capacity without these permissions.
- name: organizations:TagResources
- name: organizations:TagResource
read_only: false
required: false
description: Only required for taking action (adding tags); the policy will
Expand Down Expand Up @@ -1444,7 +1444,7 @@
- name: s3:GetBucketTagging
read_only: true
required: true
- name: s3:GetBucketIntelligentTieringConfiguration
- name: s3:GetIntelligentTieringConfiguration
read_only: true
required: true
- name: sts:GetCallerIdentity
Expand Down Expand Up @@ -1626,49 +1626,6 @@
- name: billing_center_viewer
read_only: true
required: true
- id: "./cost/aws/superseded_instances/aws_superseded_instances.pt"
name: AWS Superseded EC2 Instances
version: 2.3.0
:providers:
- :name: aws
:permissions:
- name: ec2:DescribeRegions
read_only: true
required: true
- name: ec2:DescribeInstances
read_only: true
required: true
- name: ec2:DescribeInstanceStatus
read_only: false
required: false
description: Only required for taking action; the policy will still function
in a read-only capacity without these permissions.
- name: ec2:DescribeTags
read_only: true
required: true
- name: ec2:ModifyInstanceAttribute
read_only: false
required: false
description: Only required for taking action; the policy will still function
in a read-only capacity without these permissions.
- name: ec2:StartInstances
read_only: false
required: false
description: Only required for taking action; the policy will still function
in a read-only capacity without these permissions.
- name: ec2:StopInstances
read_only: false
required: false
description: Only required for taking action; the policy will still function
in a read-only capacity without these permissions.
- name: sts:GetCallerIdentity
read_only: true
required: true
- :name: flexera
:permissions:
- name: billing_center_viewer
read_only: true
required: true
- id: "./cost/aws/unused_albs/aws_unused_albs.pt"
name: AWS Unused Application Load Balancers
version: 0.2.0
Expand Down Expand Up @@ -4842,7 +4799,7 @@
- name: sts:GetCallerIdentity
read_only: true
required: true
- name: s3:ListBuckets
- name: s3:ListAllMyBuckets
read_only: true
required: true
- name: s3:GetBucketLocation
Expand All @@ -4868,7 +4825,7 @@
- name: sts:GetCallerIdentity
read_only: true
required: true
- name: s3:ListBuckets
- name: s3:ListAllMyBuckets
read_only: true
required: true
- name: s3:GetBucketLocation
Expand Down Expand Up @@ -4899,7 +4856,7 @@
- name: sts:GetCallerIdentity
read_only: true
required: true
- name: s3:ListBuckets
- name: s3:ListAllMyBuckets
read_only: true
required: true
- name: s3:GetBucketLocation
Expand All @@ -4908,7 +4865,7 @@
- name: s3:GetBucketTagging
read_only: true
required: true
- name: s3:GetPublicAccessBlock
- name: s3:GetBucketPublicAccessBlock
read_only: true
required: true
- :name: flexera
Expand All @@ -4925,7 +4882,7 @@
- name: sts:GetCallerIdentity
read_only: true
required: true
- name: s3:ListBuckets
- name: s3:ListAllMyBuckets
read_only: true
required: true
- name: s3:GetBucketLocation
Expand All @@ -4951,7 +4908,7 @@
- name: sts:GetCallerIdentity
read_only: true
required: true
- name: s3:ListBuckets
- name: s3:ListAllMyBuckets
read_only: true
required: true
- name: s3:GetBucketLocation
Expand All @@ -4960,10 +4917,10 @@
- name: s3:GetBucketTagging
read_only: true
required: true
- name: s3:GetBucketEncryption
- name: s3:GetEncryptionConfiguration
read_only: true
required: true
- name: s3:PutBucketEncryption
- name: s3:PutEncryptionConfiguration
read_only: false
required: false
description: Only required for taking action; the policy will still function
Expand Down
Loading
Loading