Pilot53
Pilot53 copied to clipboard
Provide a default IAM role JSON for us lazy/stupid people
The IAM role should be quite short and easy, but a lot of us find it difficult at times. It would also be the same JSON for everyone, so why not include it?
Here's a proposed one:
{
"Version": "2012-10-17",
"Statement": [{
"Effect": "Allow",
"Action": "ec2:Describe*",
"Resource": "*"
}, {
"Effect": "Allow",
"Action": "elasticloadbalancing:Describe*",
"Resource": "*"
}, {
"Effect": "Allow",
"Action": [
"cloudwatch:ListMetrics",
"cloudwatch:GetMetricStatistics",
"cloudwatch:Describe*"
],
"Resource": "*"
}, {
"Effect": "Allow",
"Action": [
"logs:CreateLogGroup",
"logs:CreateLogStream",
"logs:PutLogEvents"
],
"Resource": "*"
} , {
"Effect": "Allow",
"Action": "autoscaling:Describe*",
"Resource": "*"
}, {
"Effect": "Allow",
"Action": [
"route53:*"
],
"Resource": [
"*"
]
}, {
"Effect": "Allow",
"Action": [
"elasticloadbalancing:DescribeLoadBalancers"
],
"Resource": [
"*"
]
}]
}