Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

PLT-355 Add policy statements for key user roles #100

Merged
merged 1 commit into from
Jun 26, 2024
Merged

Conversation

gsf
Copy link
Member

@gsf gsf commented Jun 25, 2024

🎫 Ticket

https://jira.cms.gov/browse/PLT-355

🛠 Changes

Policy statements added to KMS key module for roles to use keys without having full admin access.

ℹ️ Context

In looking into using customer-managed KMS keys while creating our access-log bucket, I realized we had set the policy on access/use roles too open.

@SJWalter11 This will tighten permissions around KMS keys created for opt-out functions in test environments.

🧪 Validation

See checks.

@gsf gsf self-assigned this Jun 25, 2024
@gsf gsf requested a review from a team as a code owner June 25, 2024 21:28
@gsf gsf requested a review from SJWalter11 June 25, 2024 21:33
@gsf gsf merged commit 6cc555c into main Jun 26, 2024
24 checks passed
@gsf gsf deleted the plt-355-key-users branch June 26, 2024 17:02
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants