From 7062cd6f9438428d9a66bb66455832691079384f Mon Sep 17 00:00:00 2001 From: Alexandre Hamez Date: Thu, 27 May 2021 22:04:48 +0200 Subject: [PATCH] docs: Add KMS aliases handling to IAM permissions (#1288) --- docs/iam-permissions.md | 3 +++ 1 file changed, 3 insertions(+) diff --git a/docs/iam-permissions.md b/docs/iam-permissions.md index 6e0fb2a..27f88f2 100644 --- a/docs/iam-permissions.md +++ b/docs/iam-permissions.md @@ -134,11 +134,14 @@ Following IAM permissions are the minimum permissions needed for your IAM user o "logs:ListTagsLogGroup", "logs:PutRetentionPolicy", // Following permissions for working with secrets_encryption example + "kms:CreateAlias", "kms:CreateGrant", "kms:CreateKey", + "kms:DeleteAlias", "kms:DescribeKey", "kms:GetKeyPolicy", "kms:GetKeyRotationStatus", + "kms:ListAliases", "kms:ListResourceTags", "kms:ScheduleKeyDeletion" ],