role.yaml 1.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445
  1. AWSTemplateFormatVersion: 2010-09-09
  2. Resources:
  3. RootRole:
  4. Type: 'AWS::IAM::Role'
  5. Properties:
  6. AssumeRolePolicyDocument:
  7. Version: 2012-10-17
  8. Statement:
  9. - Effect: Allow
  10. Principal:
  11. Service:
  12. - lambda.amazonaws.com
  13. - ec2.amazonaws.com.cn
  14. - ecs-tasks.amazonaws.com
  15. - vpc-flow-logs.amazonaws.com
  16. Action:
  17. - 'sts:AssumeRole'
  18. Path: /
  19. Metadata:
  20. 'AWS::CloudFormation::Designer':
  21. id: 5a809822-8fad-40ca-bd0f-7aae64ae7b4a
  22. RolePolicies:
  23. Type: 'AWS::IAM::Policy'
  24. Properties:
  25. PolicyName: rota
  26. PolicyDocument:
  27. Version: 2012-10-17
  28. Statement:
  29. - Effect: Allow
  30. Action: '*'
  31. Resource: '*'
  32. Roles:
  33. - Ref: RootRole
  34. Metadata:
  35. 'AWS::CloudFormation::Designer':
  36. id: 41ab1589-d187-45a1-99aa-379280c9f643
  37. RootInstanceProfile:
  38. Type: 'AWS::IAM::InstanceProfile'
  39. Properties:
  40. Path: /
  41. Roles:
  42. - Ref: RootRole
  43. Metadata:
  44. 'AWS::CloudFormation::Designer':
  45. id: 15050a6e-6cfb-43ec-b19f-c3c3102187d3