[deployment] give deployer AWSCodeDeployRole

This commit is contained in:
Paul Schoenfelder 2018-06-04 16:52:23 -04:00
parent 89ac340af4
commit dcb3ada765
1 changed files with 9 additions and 0 deletions

View File

@ -124,6 +124,15 @@ resource "aws_iam_role_policy" "deployer" {
policy = "${data.aws_iam_policy_document.codedeploy-policy.json}"
}
data "aws_iam_policy" "AWSCodeDeployRole" {
arn = "arn:aws:iam::aws:policy/service-role/AWSCodeDeployRole"
}
resource "aws_iam_role_policy_attachment" "codedeploy-policy-attachment" {
role = "${aws_iam_role.deployer.name}"
policy_arn = "${data.aws_iam_policy.AWSCodeDeployRole.arn}"
}
resource "aws_iam_role" "deployer" {
name = "${var.prefix}-deployer-role"
description = "The IAM role given to the CodeDeploy service"