Skip to content

Commit 10161bc

Browse files
authored
fix: Add missing ec2:DescribeSecurityGroups IPv4 VPC CNI IRSA permissions (#646)
1 parent 1d73bcb commit 10161bc

1 file changed

Lines changed: 1 addition & 0 deletions

File tree

modules/iam-role-for-service-accounts/policies.tf

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1088,6 +1088,7 @@ data "aws_iam_policy_document" "vpc_cni" {
10881088
"ec2:DescribeNetworkInterfaces",
10891089
"ec2:DescribeInstanceTypes",
10901090
"ec2:DescribeSubnets",
1091+
"ec2:DescribeSecurityGroups",
10911092
"ec2:DetachNetworkInterface",
10921093
"ec2:ModifyNetworkInterfaceAttribute",
10931094
"ec2:UnassignPrivateIpAddresses"

0 commit comments

Comments
 (0)