Project

General

Profile

Actions

Bug #20489

closed

Terraform AWS IAM policy shouldn't allow privileges escalation

Added by Lucas Di Pentima 5 months ago. Updated 5 months ago.

Status:
Resolved
Priority:
Normal
Assigned To:
Category:
Deployment
Start date:
Due date:
% Done:

100%

Estimated time:
Story points:
-
Release relationship:
Auto

Actions #1

Updated by Lucas Di Pentima 5 months ago

Updates at c342e37e4 - branch 20489-iam-policy-fix

  • Restricts the dispatcher's PassRole policy target to only keepstore instance's profiles

Manually tested on our sandbox AWS account.

Actions #2

Updated by Lucas Di Pentima 5 months ago

  • % Done changed from 0 to 100
  • Status changed from In Progress to Resolved
Actions

Also available in: Atom PDF