File tree 2 files changed +5
-10
lines changed
aws_sra_examples/solutions/guardduty/guardduty_org/templates
2 files changed +5
-10
lines changed Original file line number Diff line number Diff line change @@ -97,8 +97,7 @@ Resources:
97
97
Effect : Allow
98
98
Action : kms:GenerateDataKey
99
99
Resource : ' *'
100
- Principal :
101
- Service : ' *'
100
+ Principal : ' *'
102
101
Condition :
103
102
StringLike :
104
103
aws:PrincipalServiceName : guardduty.*.amazonaws.com
Original file line number Diff line number Diff line change @@ -136,8 +136,7 @@ Resources:
136
136
- s3:GetBucketLocation
137
137
- s3:ListBucket
138
138
Resource : !Sub arn:aws:s3:::${rGuardDutyDeliveryS3Bucket}
139
- Principal :
140
- Service : ' *'
139
+ Principal : ' *'
141
140
Condition :
142
141
StringLike :
143
142
aws:PrincipalServiceName : guardduty.*.amazonaws.com
@@ -161,8 +160,7 @@ Resources:
161
160
# StringEquals:
162
161
# s3:x-amz-acl: bucket-owner-full-control
163
162
Resource : !Sub arn:aws:s3:::${rGuardDutyDeliveryS3Bucket}/*
164
- Principal :
165
- Service : ' *'
163
+ Principal : ' *'
166
164
Condition :
167
165
StringLike :
168
166
aws:PrincipalServiceName : guardduty.*.amazonaws.com
@@ -186,8 +184,7 @@ Resources:
186
184
StringNotEquals :
187
185
s3:x-amz-server-side-encryption : aws:kms
188
186
Resource : !Sub arn:aws:s3:::${rGuardDutyDeliveryS3Bucket}/*
189
- Principal :
190
- Service : ' *'
187
+ Principal : ' *'
191
188
Condition :
192
189
StringLike :
193
190
aws:PrincipalServiceName : guardduty.*.amazonaws.com
@@ -211,8 +208,7 @@ Resources:
211
208
StringNotEquals :
212
209
s3:x-amz-server-side-encryption-aws-kms-key-id : !Sub ${pGuardDutyOrgDeliveryKMSKeyArn}
213
210
Resource : !Sub arn:aws:s3:::${rGuardDutyDeliveryS3Bucket}/*
214
- Principal :
215
- Service : ' *'
211
+ Principal : ' *'
216
212
Condition :
217
213
StringLike :
218
214
aws:PrincipalServiceName : guardduty.*.amazonaws.com
You can’t perform that action at this time.
0 commit comments