File tree Expand file tree Collapse file tree 2 files changed +22
-0
lines changed Expand file tree Collapse file tree 2 files changed +22
-0
lines changed Original file line number Diff line number Diff line change @@ -182,3 +182,11 @@ The audit policy is comprised of the following permissions:
182
182
| | kinesisanalytics: ListApplicationVersions | |
183
183
| | kinesisanalytics: DescribeApplicationVersion | |
184
184
| | kinesisanalytics: DescribeApplication | |
185
+ | AMP | aps: ListScrapers | * |
186
+ | | aps: DescribeScraper | |
187
+ | | aps: ListWorkspaces | |
188
+ | | aps: DescribeAlertManagerDefinition | |
189
+ | | aps: DescribeLoggingConfiguration | |
190
+ | | aps: DescribeWorkspace | |
191
+ | | aps: ListRuleGroupsNamespaces | |
192
+ | | aps: DescribeRuleGroupsNamespace | |
Original file line number Diff line number Diff line change @@ -248,6 +248,20 @@ data "aws_iam_policy_document" "lacework_audit_policy" {
248
248
]
249
249
resources = [" *" ]
250
250
}
251
+
252
+ statement {
253
+ sid = " AMP"
254
+ actions = [" aps:ListScrapers" ,
255
+ " aps:DescribeScraper" ,
256
+ " aps:ListWorkspaces" ,
257
+ " aps:DescribeAlertManagerDefinition" ,
258
+ " aps:DescribeLoggingConfiguration" ,
259
+ " aps:DescribeWorkspace" ,
260
+ " aps:ListRuleGroupsNamespaces" ,
261
+ " aps:DescribeRuleGroupsNamespace" ,
262
+ ]
263
+ resources = [" *" ]
264
+ }
251
265
}
252
266
253
267
resource "aws_iam_policy" "lacework_audit_policy" {
You can’t perform that action at this time.
0 commit comments