如何在无服务器中将托管策略附加到用户

时间:2019-07-22 09:05:32

标签: amazon-web-services amazon-iam serverless-framework serverless

我正在使用AWS Textract,要配置Textract,我必须创建一个用户并附加这些策略,

AmazonTextractFullAccess
AmazonS3ReadOnlyAccess
AmazonSNSFullAccess
AmazonSQSFullAccess

我正在为该项目使用无服务器框架,现在我必须附加这些规则,这是我到目前为止所拥有的,

provider:
  name: aws
  runtime: nodejs8.10
  region: eu-west-1

  iamManagedPolicies:
    - arn:aws:iam::aws:policy/AmazonTextractFullAccess
    - arn:aws:iam::aws:policy/AmazonS3FullAccess
    - arn:aws:iam::aws:policy/AmazonSNSFullAccess
    - arn:aws:iam::aws:policy/AmazonSQSFullAccess

  iamRoleStatements:
    - Effect: "Allow"
      Action:
        - lambda:InvokeFunction
        - lambda:InvokeAsync
        - textract:*
        - s3:*
      Resource: "*"

但是给定的权限在管理控制台中不可见,这是我在这里犯的错误,并且用户也具有管理权限。

0 个答案:

没有答案