-
Notifications
You must be signed in to change notification settings - Fork 11
Open
Labels
awsAmazon Web Services & cloud resourcesAmazon Web Services & cloud resourcesci/cdContinuous Integration & Continuous DeploymentContinuous Integration & Continuous DeploymentgovernancePolicies & standardsPolicies & standardshacktoberfestSpecial issue for HacktoberfestSpecial issue for Hacktoberfesthacktoberfest-2025Special issue for Hacktoberfest 2025Special issue for Hacktoberfest 2025infraInfrastructureInfrastructurepriority: highNeeds attention ASAPNeeds attention ASAPsecuritySecurity & complianceSecurity & compliance
Milestone
Description
Priority: High
Difficulty: Easy
Description:
Create an IAM policy that grants CI/CD workflows only the cloudfront:CreateInvalidation permission, scoped to the specific CloudFront distribution ARN.
- Ensure the policy follows the principle of least privilege.
Acceptance Criteria:
- IAM policy allows only
cloudfront:CreateInvalidationfor the exact distribution ARN - Policy is attached to the CI/CD role or user
Metadata
Metadata
Assignees
Labels
awsAmazon Web Services & cloud resourcesAmazon Web Services & cloud resourcesci/cdContinuous Integration & Continuous DeploymentContinuous Integration & Continuous DeploymentgovernancePolicies & standardsPolicies & standardshacktoberfestSpecial issue for HacktoberfestSpecial issue for Hacktoberfesthacktoberfest-2025Special issue for Hacktoberfest 2025Special issue for Hacktoberfest 2025infraInfrastructureInfrastructurepriority: highNeeds attention ASAPNeeds attention ASAPsecuritySecurity & complianceSecurity & compliance
Type
Projects
Status
In Progress