Skip to content

Commit 6b9c584

Browse files
Merge pull request #28 from ASFHyP3/publish-permissions
update data-publisher permissions
2 parents e8c9497 + 7059122 commit 6b9c584

File tree

1 file changed

+5
-4
lines changed

1 file changed

+5
-4
lines changed

asf-event-data/data-publisher.yml

Lines changed: 5 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -10,14 +10,15 @@ Resources:
1010
Type: AWS::IAM::User
1111
Properties:
1212
UserName: data-publisher
13+
ManagedPolicyArns:
14+
- arn:aws:iam::aws:policy/AmazonS3ReadOnlyAccess
1315
Policies:
1416
- PolicyName: data-publisher-policy
1517
PolicyDocument:
1618
Version: 2012-10-17
1719
Statement:
1820
- Effect: Allow
19-
Action: s3:ListBucket
20-
Resource: !Sub "arn:aws:s3:::${OpenDataBucketName}"
21-
- Effect: Allow
22-
Action: s3:PutObject
21+
Action:
22+
- s3:PutObject
23+
- s3:PutObjectTagging
2324
Resource: !Sub "arn:aws:s3:::${OpenDataBucketName}/*"

0 commit comments

Comments
 (0)