We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent c9004d4 commit b52b1c2Copy full SHA for b52b1c2
2 files changed
infrastructure/terraform/components/api/s3_bucket_logging.tf
@@ -44,5 +44,5 @@ resource "aws_s3_bucket_logging" "truststore" {
44
bucket = aws_s3_bucket.truststore.id
45
46
target_bucket = aws_s3_bucket.logging.bucket
47
- target_prefix = "truststore/${aws_s3_bucket.truststore.bucket}/"
+ target_prefix = "${aws_s3_bucket.truststore.bucket}/"
48
}
infrastructure/terraform/components/api/s3_bucket_policy_logging.tf
@@ -25,4 +25,20 @@ data "aws_iam_policy_document" "logging" {
25
]
26
27
28
+
29
+ statement {
30
+ sid = "s3-log-delivery"
31
+ effect = "Allow"
32
33
+ principals {
34
+ type = "Service"
35
+ identifiers = ["logging.s3.amazonaws.com"]
36
+ }
37
38
+ actions = ["s3:PutObject"]
39
40
+ resources = [
41
+ "${aws_s3_bucket.logging.arn}/*",
42
+ ]
43
0 commit comments