Skip to content

Commit b26183c

Browse files
Tony Shermanaaronatbissell
authored andcommitted
fix(assetlibraryhistory): add kinesis permissions to lambda execution role
1 parent 701db4d commit b26183c

File tree

1 file changed

+8
-0
lines changed

1 file changed

+8
-0
lines changed

source/packages/services/assetlibraryhistory/infrastructure/cfn-assetLibraryHistory.yml

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -184,10 +184,18 @@ Resources:
184184
- 'dynamodb:PutItem'
185185
- 'dynamodb:UpdateItem'
186186
- 'dynamodb:DeleteItem'
187+
- 'kinesis:DescribeStream'
188+
- 'kinesis:DescribeStreamSummary'
189+
- 'kinesis:GetRecords'
190+
- 'kinesis:GetShardIterator'
191+
- 'kinesis:ListShards'
192+
- 'kinesis:ListStreams'
193+
- 'kinesis:SubscribeToShard'
187194
Effect: Allow
188195
Resource:
189196
- !GetAtt HistoryTable.Arn
190197
- !Sub '${HistoryTable.Arn}/index/type-time-index'
198+
- !GetAtt EventsKinesisStream.Arn
191199

192200
RESTLambdaExecutionRole:
193201
Type: AWS::IAM::Role

0 commit comments

Comments
 (0)