Commit a2b30f66 authored by Felix Edelsten's avatar Felix Edelsten

Adding in all permissions on Quicksight to steamhaus_apn_policy.

parent 69562a9c
...@@ -2,98 +2,105 @@ ...@@ -2,98 +2,105 @@
"Version": "2012-10-17", "Version": "2012-10-17",
"Statement": [ "Statement": [
{ {
"Sid": "VisualEditor0",
"Effect": "Allow",
"Action": "*",
"Resource": "*"
},
{
"Sid": "VisualEditor1",
"Effect": "Deny",
"Action": [ "Action": [
"iam:AddRoleToInstanceProfile", "iam:UpdateAssumeRolePolicy",
"iam:AddClientIDToOpenIDConnectProvider", "iam:GetPolicyVersion",
"iam:AttachGroupPolicy", "iam:GetAccountPasswordPolicy",
"iam:DeleteGroup",
"iam:GenerateServiceLastAccessedDetails",
"iam:UpdateOpenIDConnectProviderThumbprint",
"iam:RemoveRoleFromInstanceProfile",
"iam:UpdateGroup",
"iam:CreateRole",
"iam:AttachRolePolicy", "iam:AttachRolePolicy",
"iam:AttachUserPolicy", "iam:PutRolePolicy",
"iam:CreateAccountAlias", "iam:AddRoleToInstanceProfile",
"iam:CreateGroup",
"iam:CreateInstanceProfile",
"iam:CreateLoginProfile", "iam:CreateLoginProfile",
"iam:CreateOpenIDConnectProvider", "iam:SimulateCustomPolicy",
"iam:CreatePolicy", "iam:DetachRolePolicy",
"iam:CreatePolicyVersion", "iam:SimulatePrincipalPolicy",
"iam:CreateRole", "iam:CreateAccountAlias",
"iam:CreateSAMLProvider",
"iam:CreateUser",
"iam:DeleteAccountAlias",
"iam:DeleteAccountPasswordPolicy",
"iam:DeleteGroup",
"iam:DeleteGroupPolicy",
"iam:DeleteInstanceProfile",
"iam:DeleteLoginProfile",
"iam:DeleteOpenIDConnectProvider",
"iam:DeletePolicy",
"iam:DeletePolicyVersion",
"iam:DeleteRole",
"iam:DeleteRolePolicy",
"iam:DeleteSAMLProvider",
"iam:DeleteSSHPublicKey",
"iam:DeleteServerCertificate", "iam:DeleteServerCertificate",
"iam:DeleteSigningCertificate", "iam:UploadSSHPublicKey",
"iam:DeleteUser",
"iam:DeleteUserPolicy",
"iam:DeleteVirtualMFADevice",
"iam:DetachGroupPolicy", "iam:DetachGroupPolicy",
"iam:DetachRolePolicy",
"iam:DetachUserPolicy", "iam:DetachUserPolicy",
"iam:GenerateCredentialReport", "iam:DeleteOpenIDConnectProvider",
"iam:GenerateServiceLastAccessedDetails",
"iam:GetAccessKeyLastUsed",
"iam:GetAccountAuthorizationDetails", "iam:GetAccountAuthorizationDetails",
"iam:GetAccountPasswordPolicy",
"iam:GetAccountSummary",
"iam:GetContextKeysForCustomPolicy",
"iam:GetContextKeysForPrincipalPolicy",
"iam:GetCredentialReport", "iam:GetCredentialReport",
"iam:GetInstanceProfile", "iam:PutGroupPolicy",
"iam:GetLoginProfile", "iam:UpdateLoginProfile",
"iam:GetOpenIDConnectProvider", "iam:GetServerCertificate",
"iam:GetPolicy",
"iam:GetPolicyVersion",
"iam:GetRole", "iam:GetRole",
"iam:CreateGroup",
"iam:GetPolicy",
"iam:RemoveClientIDFromOpenIDConnectProvider",
"iam:UpdateUser",
"iam:GetAccessKeyLastUsed",
"iam:DeleteUserPolicy",
"iam:AttachUserPolicy",
"iam:DeleteRole",
"iam:UpdateSSHPublicKey",
"iam:UpdateServerCertificate",
"iam:DeleteSigningCertificate",
"iam:UpdateAccountPasswordPolicy",
"iam:GetUserPolicy",
"iam:GetOpenIDConnectProvider",
"iam:GetRolePolicy", "iam:GetRolePolicy",
"iam:GetSAMLProvider", "iam:GetAccountSummary",
"iam:GetSSHPublicKey", "iam:CreateInstanceProfile",
"iam:GetServerCertificate", "iam:GenerateCredentialReport",
"iam:GetServiceLastAccessedDetails",
"iam:GetServiceLastAccessedDetailsWithEntities", "iam:GetServiceLastAccessedDetailsWithEntities",
"iam:GetUser", "iam:DeletePolicy",
"iam:GetUserPolicy", "iam:DeleteSSHPublicKey",
"iam:CreateSAMLProvider",
"iam:GetServiceLastAccessedDetails",
"iam:CreateUser",
"iam:GetContextKeysForPrincipalPolicy",
"iam:PassRole", "iam:PassRole",
"iam:PutGroupPolicy",
"iam:PutRolePolicy",
"iam:PutUserPolicy",
"iam:RemoveClientIDFromOpenIDConnectProvider",
"iam:RemoveRoleFromInstanceProfile",
"iam:RemoveUserFromGroup", "iam:RemoveUserFromGroup",
"iam:SetDefaultPolicyVersion", "iam:DeleteRolePolicy",
"iam:SimulateCustomPolicy", "iam:DeleteAccountAlias",
"iam:SimulatePrincipalPolicy", "iam:CreatePolicyVersion",
"iam:UpdateAccountPasswordPolicy",
"iam:UpdateAssumeRolePolicy",
"iam:UpdateGroup",
"iam:UpdateLoginProfile",
"iam:UpdateOpenIDConnectProviderThumbprint",
"iam:UpdateSAMLProvider", "iam:UpdateSAMLProvider",
"iam:UpdateSSHPublicKey", "iam:GetSAMLProvider",
"iam:UpdateServerCertificate", "iam:DeleteLoginProfile",
"iam:UpdateSigningCertificate", "iam:DeleteInstanceProfile",
"iam:UpdateUser",
"iam:UploadSSHPublicKey",
"iam:UploadServerCertificate",
"iam:UploadSigningCertificate", "iam:UploadSigningCertificate",
"support:*", "iam:DeleteAccountPasswordPolicy",
"aws-portal:*" "iam:GetInstanceProfile",
"iam:GetSSHPublicKey",
"iam:DeleteUser",
"iam:CreateOpenIDConnectProvider",
"iam:UploadServerCertificate",
"iam:CreatePolicy",
"iam:GetContextKeysForCustomPolicy",
"iam:DeleteVirtualMFADevice",
"iam:AttachGroupPolicy",
"iam:PutUserPolicy",
"aws-portal:*",
"iam:GetUser",
"iam:UpdateSigningCertificate",
"iam:DeleteGroupPolicy",
"iam:AddClientIDToOpenIDConnectProvider",
"iam:GetLoginProfile",
"iam:DeletePolicyVersion",
"iam:SetDefaultPolicyVersion",
"iam:DeleteSAMLProvider"
], ],
"Effect": "Deny",
"Resource": "*" "Resource": "*"
}, },
{ {
"Effect": "Allow", "Sid": "VisualEditor2",
"Action": "*", "Effect": "Deny",
"Action": "support:*",
"Resource": "*" "Resource": "*"
} }
] ]
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment