-
Notifications
You must be signed in to change notification settings - Fork 14
/
definition.yml
36 lines (36 loc) · 1.02 KB
/
definition.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
description: Publish resulting STAC Collections and Items to catalog, and optionally SNS
lambda:
memorySize: 128
timeout: 30
handler: lambda_function.lambda_handler
iamRoleStatements:
- Effect: "Allow"
Action:
- SNS:Publish
Resource: arn:aws:sns:#{AWS::Region}:#{AWS::AccountId}:*
- Effect: "Allow"
Action:
- dynamodb:PutItem
- dynamodb:UpdateItem
Resource:
- !GetAtt StateTable.Arn
- !Join ['', [!GetAtt StateTable.Arn, '/index/*']]
- Effect: "Allow"
Action:
- "s3:PutObject"
Resource:
- !Join
- ''
- - 'arn:aws:s3:::'
- ${self:provider.environment.CIRRUS_DATA_BUCKET}
- '*'
- Effect: "Allow"
Action:
- "s3:ListBucket"
- "s3:GetObject"
- "s3:GetBucketLocation"
Resource: "*"
- Effect: "Allow"
Action: secretsmanager:GetSecretValue
Resource:
- arn:aws:secretsmanager:#{AWS::Region}:#{AWS::AccountId}:secret:cirrus-creds-*