@@ -62,10 +62,10 @@ data "aws_iam_policy_document" "email_report_lambda_ssm_access" {
6262 ]
6363
6464 resources = [
65- " arn:aws:ssm:${ data . aws_region . current . name } :${ data . aws_caller_identity . current . account_id } :parameter${ var . email_report_sender_email_param_name } " ,
66- " arn:aws:ssm:${ data . aws_region . current . name } :${ data . aws_caller_identity . current . account_id } :parameter${ var . email_report_recipient_email_param_name } " ,
67- " arn:aws:ssm:${ data . aws_region . current . name } :${ data . aws_caller_identity . current . account_id } :parameter${ var . email_report_recipient_internal_email_param_name } " ,
68- " arn:aws:ssm:${ data . aws_region . current . name } :${ data . aws_caller_identity . current . account_id } :parameter${ var . email_report_sender_email_key_param_name } " ,
65+ " arn:aws:ssm:${ data . aws_region . current . region } :${ data . aws_caller_identity . current . account_id } :parameter${ var . email_report_sender_email_param_name } " ,
66+ " arn:aws:ssm:${ data . aws_region . current . region } :${ data . aws_caller_identity . current . account_id } :parameter${ var . email_report_recipient_email_param_name } " ,
67+ " arn:aws:ssm:${ data . aws_region . current . region } :${ data . aws_caller_identity . current . account_id } :parameter${ var . email_report_recipient_internal_email_param_name } " ,
68+ " arn:aws:ssm:${ data . aws_region . current . region } :${ data . aws_caller_identity . current . account_id } :parameter${ var . email_report_sender_email_key_param_name } " ,
6969 ]
7070 }
7171}
@@ -128,7 +128,7 @@ data "aws_iam_policy_document" "email_report_send_raw_email" {
128128 ]
129129
130130 resources = [
131- " arn:aws:ses:${ data . aws_region . current . name } :${ data . aws_caller_identity . current . account_id } :identity/${ data . aws_ssm_parameter . email_report_sender_email . value } " ,
131+ " arn:aws:ses:${ data . aws_region . current . region } :${ data . aws_caller_identity . current . account_id } :identity/${ data . aws_ssm_parameter . email_report_sender_email . value } " ,
132132 ]
133133 }
134134}
@@ -200,10 +200,10 @@ data "aws_iam_policy_document" "log_alerts_ssm_access" {
200200 ]
201201
202202 resources = [
203- " arn:aws:ssm:${ data . aws_region . current . name } :${ data . aws_caller_identity . current . account_id } :parameter${ var . log_alerts_technical_failures_webhook_url_param_name } " ,
204- " arn:aws:ssm:${ data . aws_region . current . name } :${ data . aws_caller_identity . current . account_id } :parameter${ var . log_alerts_technical_failures_above_threshold_webhook_url_param_name } " ,
205- " arn:aws:ssm:${ data . aws_region . current . name } :${ data . aws_caller_identity . current . account_id } :parameter${ var . log_alerts_general_webhook_url_param_name } " ,
206- " arn:aws:ssm:${ data . aws_region . current . name } :${ data . aws_caller_identity . current . account_id } :parameter${ var . log_alerts_technical_failures_above_threshold_rate_param_name } "
203+ " arn:aws:ssm:${ data . aws_region . current . region } :${ data . aws_caller_identity . current . account_id } :parameter${ var . log_alerts_technical_failures_webhook_url_param_name } " ,
204+ " arn:aws:ssm:${ data . aws_region . current . region } :${ data . aws_caller_identity . current . account_id } :parameter${ var . log_alerts_technical_failures_above_threshold_webhook_url_param_name } " ,
205+ " arn:aws:ssm:${ data . aws_region . current . region } :${ data . aws_caller_identity . current . account_id } :parameter${ var . log_alerts_general_webhook_url_param_name } " ,
206+ " arn:aws:ssm:${ data . aws_region . current . region } :${ data . aws_caller_identity . current . account_id } :parameter${ var . log_alerts_technical_failures_above_threshold_rate_param_name } "
207207 ]
208208 }
209209}
@@ -324,8 +324,8 @@ data "aws_iam_policy_document" "store_asid_lookup_lambda_access" {
324324 " ssm:GetParameter"
325325 ]
326326 resources = [
327- " arn:aws:ssm:${ data . aws_region . current . name } :${ data . aws_caller_identity . current . account_id } :parameter/registrations/${ var . environment } /data-pipeline/gp2gp-dashboard/permitted-emails" ,
328- " arn:aws:ssm:${ data . aws_region . current . name } :${ data . aws_caller_identity . current . account_id } :parameter/registrations/${ var . environment } /data-pipeline/gp2gp-dashboard/email-storage-bucket-name"
327+ " arn:aws:ssm:${ data . aws_region . current . region } :${ data . aws_caller_identity . current . account_id } :parameter/registrations/${ var . environment } /data-pipeline/gp2gp-dashboard/permitted-emails" ,
328+ " arn:aws:ssm:${ data . aws_region . current . region } :${ data . aws_caller_identity . current . account_id } :parameter/registrations/${ var . environment } /data-pipeline/gp2gp-dashboard/email-storage-bucket-name"
329329 ]
330330 }
331331
@@ -342,7 +342,7 @@ data "aws_iam_policy_document" "store_asid_lookup_lambda_access" {
342342 actions = [
343343 " states:StartExecution"
344344 ]
345- resources = [" arn:aws:states:${ data . aws_region . current . name } :${ data . aws_caller_identity . current . account_id } :stateMachine:ods-downloader-pipeline" ]
345+ resources = [" arn:aws:states:${ data . aws_region . current . region } :${ data . aws_caller_identity . current . account_id } :stateMachine:ods-downloader-pipeline" ]
346346 }
347347}
348348
0 commit comments