diff --git a/resources/aws/iam/managed_policy/multi_account/iambic_test/iambic_test_9740.yaml b/resources/aws/iam/managed_policy/multi_account/iambic_test/iambic_test_9740.yaml new file mode 100644 index 0000000..b66a14b --- /dev/null +++ b/resources/aws/iam/managed_policy/multi_account/iambic_test/iambic_test_9740.yaml @@ -0,0 +1,17 @@ +template_type: NOQ::AWS::IAM::ManagedPolicy +template_schema_url: https://docs.iambic.org/reference/schemas/aws_iam_managed_policy_template +included_accounts: + - iambic_test_spoke_account_2 + - iambic_test_spoke_account_3 +identifier: iambic_test_9740 +properties: + description: This was created by a functional test. + path: /iambic_test/ + policy_document: + statement: + - action: s3:ListObject + effect: Deny + resource: + - '*' + version: '2012-10-17' + policy_name: iambic_test_9740 diff --git a/resources/aws/iam/user/all_accounts/iambic_test/iambic_test_3245.yaml b/resources/aws/iam/user/all_accounts/iambic_test/iambic_test_3245.yaml new file mode 100644 index 0000000..d91197c --- /dev/null +++ b/resources/aws/iam/user/all_accounts/iambic_test/iambic_test_3245.yaml @@ -0,0 +1,22 @@ +template_type: NOQ::AWS::IAM::User +template_schema_url: https://docs.iambic.org/reference/schemas/aws_iam_user_template +identifier: iambic_test_3245 +properties: + inline_policies: + - included_accounts: + - iambic_test_org_account + - iambic_test_spoke_account_1 + policy_name: spoke-acct-policy + statement: + - action: + - s3:initialpolicy + effect: Deny + resource: '*' + version: '2012-10-17' + managed_policies: + - included_accounts: + - iambic_test_org_account + - iambic_test_spoke_account_1 + policy_arn: arn:aws:iam::aws:policy/job-function/ViewOnlyAccess + path: /iambic_test/ + user_name: iambic_test_3245 diff --git a/resources/aws/iam/user/all_accounts/iambic_test/iambic_test_4384.yaml b/resources/aws/iam/user/all_accounts/iambic_test/iambic_test_4384.yaml new file mode 100644 index 0000000..b75b2fc --- /dev/null +++ b/resources/aws/iam/user/all_accounts/iambic_test/iambic_test_4384.yaml @@ -0,0 +1,22 @@ +template_type: NOQ::AWS::IAM::User +template_schema_url: https://docs.iambic.org/reference/schemas/aws_iam_user_template +identifier: iambic_test_4384 +properties: + inline_policies: + - included_accounts: + - iambic_test_org_account + - iambic_test_spoke_account_1 + policy_name: spoke-acct-policy + statement: + - action: + - s3:initialpolicy + effect: Deny + resource: '*' + version: '2012-10-17' + managed_policies: + - included_accounts: + - iambic_test_org_account + - iambic_test_spoke_account_1 + policy_arn: arn:aws:iam::aws:policy/job-function/ViewOnlyAccess + path: /iambic_test/ + user_name: iambic_test_4384 diff --git a/resources/aws/iam/user/all_accounts/iambic_test/iambic_test_8612.yaml b/resources/aws/iam/user/all_accounts/iambic_test/iambic_test_8612.yaml new file mode 100644 index 0000000..b729091 --- /dev/null +++ b/resources/aws/iam/user/all_accounts/iambic_test/iambic_test_8612.yaml @@ -0,0 +1,22 @@ +template_type: NOQ::AWS::IAM::User +template_schema_url: https://docs.iambic.org/reference/schemas/aws_iam_user_template +identifier: iambic_test_8612 +properties: + inline_policies: + - included_accounts: + - iambic_test_org_account + - iambic_test_spoke_account_1 + policy_name: spoke-acct-policy + statement: + - action: + - s3:initialpolicy + effect: Deny + resource: '*' + version: '2012-10-17' + managed_policies: + - included_accounts: + - iambic_test_org_account + - iambic_test_spoke_account_1 + policy_arn: arn:aws:iam::aws:policy/job-function/ViewOnlyAccess + path: /iambic_test/ + user_name: iambic_test_8612