terraform-aws-eks-blueprints-addons icon indicating copy to clipboard operation
terraform-aws-eks-blueprints-addons copied to clipboard

fix: Correct IAM policy BatchGetSecretValue in external secrets

Open bdellegrazie opened this issue 2 months ago • 2 comments

What does this PR do?

This fixes external-secrets use of BatchGetSecretValue by correcting the IAM policy in accordance with the external-secrets documentation and AWS docs.

IAM permission secretsmanager:BatchGetSecretValue should be against resource * rather than the individual secret.

Motivation

  • Resolves #475

More

  • [x] Yes, I have tested the PR using my local account setup (Provide any test evidence report under Additional Notes)
  • [X] Yes, I ran pre-commit run -a with this PR

For Moderators

  • [ ] E2E Test successfully complete before merge?

bdellegrazie avatar Oct 03 '25 07:10 bdellegrazie

This PR has been automatically marked as stale because it has been open 30 days with no activity. Remove stale label or comment or this PR will be closed in 10 days

github-actions[bot] avatar Nov 03 '25 00:11 github-actions[bot]

Not stale!

bdellegrazie avatar Nov 03 '25 08:11 bdellegrazie