Commit a2b30f66 authored by Felix Edelsten's avatar Felix Edelsten

Adding in all permissions on Quicksight to steamhaus_apn_policy.

parent 69562a9c
......@@ -2,98 +2,105 @@
"Version": "2012-10-17",
"Statement": [
{
"Sid": "VisualEditor0",
"Effect": "Allow",
"Action": "*",
"Resource": "*"
},
{
"Sid": "VisualEditor1",
"Effect": "Deny",
"Action": [
"iam:AddRoleToInstanceProfile",
"iam:AddClientIDToOpenIDConnectProvider",
"iam:AttachGroupPolicy",
"iam:UpdateAssumeRolePolicy",
"iam:GetPolicyVersion",
"iam:GetAccountPasswordPolicy",
"iam:DeleteGroup",
"iam:GenerateServiceLastAccessedDetails",
"iam:UpdateOpenIDConnectProviderThumbprint",
"iam:RemoveRoleFromInstanceProfile",
"iam:UpdateGroup",
"iam:CreateRole",
"iam:AttachRolePolicy",
"iam:AttachUserPolicy",
"iam:CreateAccountAlias",
"iam:CreateGroup",
"iam:CreateInstanceProfile",
"iam:PutRolePolicy",
"iam:AddRoleToInstanceProfile",
"iam:CreateLoginProfile",
"iam:CreateOpenIDConnectProvider",
"iam:CreatePolicy",
"iam:CreatePolicyVersion",
"iam:CreateRole",
"iam:CreateSAMLProvider",
"iam:CreateUser",
"iam:DeleteAccountAlias",
"iam:DeleteAccountPasswordPolicy",
"iam:DeleteGroup",
"iam:DeleteGroupPolicy",
"iam:DeleteInstanceProfile",
"iam:DeleteLoginProfile",
"iam:DeleteOpenIDConnectProvider",
"iam:DeletePolicy",
"iam:DeletePolicyVersion",
"iam:DeleteRole",
"iam:DeleteRolePolicy",
"iam:DeleteSAMLProvider",
"iam:DeleteSSHPublicKey",
"iam:SimulateCustomPolicy",
"iam:DetachRolePolicy",
"iam:SimulatePrincipalPolicy",
"iam:CreateAccountAlias",
"iam:DeleteServerCertificate",
"iam:DeleteSigningCertificate",
"iam:DeleteUser",
"iam:DeleteUserPolicy",
"iam:DeleteVirtualMFADevice",
"iam:UploadSSHPublicKey",
"iam:DetachGroupPolicy",
"iam:DetachRolePolicy",
"iam:DetachUserPolicy",
"iam:GenerateCredentialReport",
"iam:GenerateServiceLastAccessedDetails",
"iam:GetAccessKeyLastUsed",
"iam:DeleteOpenIDConnectProvider",
"iam:GetAccountAuthorizationDetails",
"iam:GetAccountPasswordPolicy",
"iam:GetAccountSummary",
"iam:GetContextKeysForCustomPolicy",
"iam:GetContextKeysForPrincipalPolicy",
"iam:GetCredentialReport",
"iam:GetInstanceProfile",
"iam:GetLoginProfile",
"iam:GetOpenIDConnectProvider",
"iam:GetPolicy",
"iam:GetPolicyVersion",
"iam:PutGroupPolicy",
"iam:UpdateLoginProfile",
"iam:GetServerCertificate",
"iam:GetRole",
"iam:CreateGroup",
"iam:GetPolicy",
"iam:RemoveClientIDFromOpenIDConnectProvider",
"iam:UpdateUser",
"iam:GetAccessKeyLastUsed",
"iam:DeleteUserPolicy",
"iam:AttachUserPolicy",
"iam:DeleteRole",
"iam:UpdateSSHPublicKey",
"iam:UpdateServerCertificate",
"iam:DeleteSigningCertificate",
"iam:UpdateAccountPasswordPolicy",
"iam:GetUserPolicy",
"iam:GetOpenIDConnectProvider",
"iam:GetRolePolicy",
"iam:GetSAMLProvider",
"iam:GetSSHPublicKey",
"iam:GetServerCertificate",
"iam:GetServiceLastAccessedDetails",
"iam:GetAccountSummary",
"iam:CreateInstanceProfile",
"iam:GenerateCredentialReport",
"iam:GetServiceLastAccessedDetailsWithEntities",
"iam:GetUser",
"iam:GetUserPolicy",
"iam:DeletePolicy",
"iam:DeleteSSHPublicKey",
"iam:CreateSAMLProvider",
"iam:GetServiceLastAccessedDetails",
"iam:CreateUser",
"iam:GetContextKeysForPrincipalPolicy",
"iam:PassRole",
"iam:PutGroupPolicy",
"iam:PutRolePolicy",
"iam:PutUserPolicy",
"iam:RemoveClientIDFromOpenIDConnectProvider",
"iam:RemoveRoleFromInstanceProfile",
"iam:RemoveUserFromGroup",
"iam:SetDefaultPolicyVersion",
"iam:SimulateCustomPolicy",
"iam:SimulatePrincipalPolicy",
"iam:UpdateAccountPasswordPolicy",
"iam:UpdateAssumeRolePolicy",
"iam:UpdateGroup",
"iam:UpdateLoginProfile",
"iam:UpdateOpenIDConnectProviderThumbprint",
"iam:DeleteRolePolicy",
"iam:DeleteAccountAlias",
"iam:CreatePolicyVersion",
"iam:UpdateSAMLProvider",
"iam:UpdateSSHPublicKey",
"iam:UpdateServerCertificate",
"iam:UpdateSigningCertificate",
"iam:UpdateUser",
"iam:UploadSSHPublicKey",
"iam:UploadServerCertificate",
"iam:GetSAMLProvider",
"iam:DeleteLoginProfile",
"iam:DeleteInstanceProfile",
"iam:UploadSigningCertificate",
"support:*",
"aws-portal:*"
"iam:DeleteAccountPasswordPolicy",
"iam:GetInstanceProfile",
"iam:GetSSHPublicKey",
"iam:DeleteUser",
"iam:CreateOpenIDConnectProvider",
"iam:UploadServerCertificate",
"iam:CreatePolicy",
"iam:GetContextKeysForCustomPolicy",
"iam:DeleteVirtualMFADevice",
"iam:AttachGroupPolicy",
"iam:PutUserPolicy",
"aws-portal:*",
"iam:GetUser",
"iam:UpdateSigningCertificate",
"iam:DeleteGroupPolicy",
"iam:AddClientIDToOpenIDConnectProvider",
"iam:GetLoginProfile",
"iam:DeletePolicyVersion",
"iam:SetDefaultPolicyVersion",
"iam:DeleteSAMLProvider"
],
"Effect": "Deny",
"Resource": "*"
},
{
"Effect": "Allow",
"Action": "*",
"Sid": "VisualEditor2",
"Effect": "Deny",
"Action": "support:*",
"Resource": "*"
}
]
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment