Slide 63
Slide 63 text
IAMポリシーの内容
{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Action": [
"lambda:List*",
"lambda:GetFunction",
"lambda:InvokeFunction"
],
"Resource": "arn:aws:lambda:ap-northeast-1:055450064556:function:db-buckup*"
},
{
"Effect": "Allow",
"Action": [
"iam:Get*",
"iam:List*"
],
"Resource": [
"arn:aws:iam::055450064556:policy/dboperator",
"arn:aws:iam::055450064556:user/dboperator"
]
}
]
}
db-buckupというLambda関数に対して実行権限と
読み取りの権限があることがわかる。