Skip to content

Commit ddf1870

Browse files
author
ievgeniia ieromenko
committed
add permissions to create service-linked role
1 parent b37ceed commit ddf1870

File tree

1 file changed

+1
-0
lines changed

1 file changed

+1
-0
lines changed

aws_sra_examples/solutions/cloudtrail/cloudtrail_org/templates/sra-cloudtrail-org.yaml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -400,6 +400,7 @@ Resources:
400400
- iam:DeleteServiceLinkedRole
401401
Resource:
402402
- !Sub arn:${AWS::Partition}:iam::${AWS::AccountId}:role/aws-service-role/cloudtrail.amazonaws.com/AWSServiceRoleForCloudTrail*
403+
- !Sub arn:${AWS::Partition}:iam::${AWS::AccountId}:role/aws-service-role/context.cloudtrail.amazonaws.com/AWSServiceRoleForCloudTrailEventContext
403404
Tags:
404405
- Key: sra-solution
405406
Value: !Ref pSRASolutionName

0 commit comments

Comments
 (0)