这是indexloc提供的服务,不要输入任何密码
Skip to content

Allow the dynamodb table via the policy #114

@rgarrigue

Description

@rgarrigue

Hi

I've a multi account setup, using Terragrunt, with states centralized in a shared admin account. Attaching the policy to an assumable role, I expected to be done, but turns out I can't deal with the DyanmoDB table

ERRO[0001] AccessDeniedException: User: arn:aws:sts::11111111111111:assumed-role/company-shared-terraform-state-access/222222222222222222 is not authorized to perform: dynamodb:DescribeTable on resource: arn:aws:dynamodb:eu-north-1:333333333333333:table/company-shared-terraform-locks because no identity-based policy allows the dynamodb:DescribeTable action

I'll add this myself, but imho this should be added here

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions