Skip to content

Commit

Permalink
Release 5.1.0 (#46)
Browse files Browse the repository at this point in the history
* Changes in managed node group & outputs.tf file.
* Changes made for variables & readme updated
* Changed variables & updated description.
* Upgraded version of EKS from 1.28 to 1.29 & source version from 19.21 to 20.8.0.
* Made changes to vpc module inputs.
* Update README.md
* Removed default addons functionality from EKS module
  • Loading branch information
ankush-sqops authored Jul 19, 2024
1 parent 0d33012 commit ed9d5a3
Show file tree
Hide file tree
Showing 17 changed files with 972 additions and 737 deletions.
131 changes: 107 additions & 24 deletions IAM.md
Original file line number Diff line number Diff line change
Expand Up @@ -11,17 +11,26 @@ The Policy required is:
"Sid": "VisualEditor0",
"Effect": "Allow",
"Action": [
"ec2:DescribeImages",
"ec2:DescribeSubnets",
"ec2:DeleteLaunchTemplate",
"ec2:AuthorizeSecurityGroupEgress",
"ec2:AuthorizeSecurityGroupIngress",
"ec2:CreateLaunchTemplate",
"ec2:CreateLaunchTemplateVersion",
"ec2:CreateSecurityGroup",
"ec2:CreateTags",
"ec2:DeleteLaunchTemplate",
"ec2:DeleteSecurityGroup",
"ec2:DeleteTags",
"ec2:DescribeAccountAttributes",
"ec2:DescribeImages",
"ec2:DescribeInstanceTypes",
"ec2:DescribeLaunchTemplateVersions",
"ec2:DescribeLaunchTemplates",
"ec2:DescribeAccountAttributes",
"ec2:DescribeAvailabilityZones",
"ec2:CreateLaunchTemplateVersion",
"ec2:DescribeLaunchTemplateVersions"

"ec2:DescribeNetworkInterfaces",
"ec2:DescribeSecurityGroups",
"ec2:DescribeSubnets",
"ec2:DescribeTags",
"ec2:RevokeSecurityGroupEgress",
"ec2:RevokeSecurityGroupIngress"
],
"Resource": [
"*"
Expand All @@ -31,12 +40,22 @@ The Policy required is:
"Sid": "VisualEditor1",
"Effect": "Allow",
"Action": [
"eks:TagResource",
"eks:UntagResource",
"eks:CreateAddon",
"eks:CreateCluster",
"eks:CreateNodegroup",
"eks:DeleteAddon",
"eks:DeleteCluster",
"eks:DeleteNodegroup",
"eks:DescribeAddon",
"eks:DescribeAddonVersions",
"eks:DescribeCluster",
"eks:DescribeNodegroup",
"eks:DescribeNodegroup",
"eks:ListAddons",
"eks:ListTagsForResource",
"eks:TagResource",
"eks:UntagResource",
"eks:UpdateAddon",
"eks:UpdateClusterConfig",
"eks:UpdateNodegroupConfig"
],
"Resource": [
Expand All @@ -47,27 +66,91 @@ The Policy required is:
"Sid": "VisualEditor2",
"Effect": "Allow",
"Action": [
"iam:TagRole"
"iam:GetRole",
"iam:GetPolicy",
"iam:AttachRolePolicy",
"iam:CreateOpenIDConnectProvider",
"iam:CreatePolicy",
"iam:CreateRole",
"iam:CreateServiceLinkedRole",
"iam:DeleteOpenIDConnectProvider",
"iam:DeletePolicy",
"iam:DeleteRole",
"iam:ListPolicies",
"iam:CreatePolicy",
"iam:DeletePolicy",
"iam:AttachRolePolicy",
"iam:ListRolePolicies",
"iam:DetachRolePolicy",
"iam:DeleteRolePermissionsBoundary",
"iam:DeleteRolePolicy",
"iam:DetachRolePolicy",
"iam:GetOpenIDConnectProvider",
"iam:GetPolicy",
"iam:GetPolicyVersion",
"iam:ListPolicyVersions",
"iam:CreateServiceLinkedRole",
"iam:GetRole",
"iam:GetRolePolicy",
"iam:ListAttachedRolePolicies",
"iam:ListInstanceProfilesForRole"
"iam:ListInstanceProfilesForRole",
"iam:ListPolicies",
"iam:ListPolicyVersions",
"iam:ListRolePolicies",
"iam:PassRole",
"iam:PutRolePermissionsBoundary",
"iam:PutRolePolicy",
"iam:TagOpenIDConnectProvider",
"iam:TagPolicy",
"iam:TagRole",
"iam:UntagOpenIDConnectProvider",
"iam:UntagPolicy",
"iam:UpdateOpenIDConnectProviderThumbprint",
"iam:UpdateRoleDescription"
],
"Resource": [
"*"
]
},
{
"Sid": "VisualEditor3",
"Effect": "Allow",
"Action": [
"kms:CreateAlias",
"kms:CreateGrant",
"kms:CreateKey",
"kms:DeleteAlias",
"kms:DescribeKey",
"kms:DisableKey",
"kms:EnableKey",
"kms:EnableKeyRotation",
"kms:GetKeyPolicy",
"kms:GetKeyRotationStatus",
"kms:GetParametersForImport",
"kms:ImportKeyMaterial",
"kms:ListAliases",
"kms:ListGrants",
"kms:ListResourceTags",
"kms:PutKeyPolicy",
"kms:ReplicateKey",
"kms:RevokeGrant",
"kms:ScheduleKeyDeletion",
"kms:TagResource",
"kms:UntagResource"
],
"Resource": [
"*"
]
},
{
"Sid": "VisualEditor4",
"Effect": "Allow",
"Action": [
"logs:AssociateKmsKey",
"logs:CreateLogGroup",
"logs:DeleteLogGroup",
"logs:DeleteRetentionPolicy",
"logs:DescribeLogGroups",
"logs:DisassociateKmsKey",
"logs:ListTagsLogGroup",
"logs:PutRetentionPolicy",
"logs:TagLogGroup",
"logs:UntagLogGroup"
],
"Resource": [
"*"
]
}
}
]
}

Expand Down
Loading

0 comments on commit ed9d5a3

Please sign in to comment.