Skip to content

Domain list fails when IAM policy applied #14

@slipperyseal

Description

@slipperyseal

I just spotted a limitation when using IAM policies which restrict access to domains. Obviously the root list command fails on /. Suggest adding an option to define the list path.

User (arn:aws:iam::111111111111:user/domainname) does not have permission to perform (sdb:ListDomains) on resource (arn:aws:sdb:ap-southeast-2:111111111111:domain/). Contact account owner.

Update: I added an IAM rule to allow ListDomains on * and it "works". All domains are visible but only the restricted path can be queried or updated.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions