Files
object-browser/web-app/tests/policies/rewind-allowed.json
2024-04-04 23:41:20 -06:00

37 lines
855 B
JSON

{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Deny",
"Action": ["s3:CreateBucket", "s3:DeleteBucket"],
"Resource": ["arn:aws:s3:::*"]
},
{
"Effect": "Allow",
"Action": ["s3:ListBucket"],
"Resource": ["arn:aws:s3:::bucketname"]
},
{
"Effect": "Allow",
"Action": ["s3:GetBucketLocation", "s3:GetBucketVersioning"],
"Resource": ["arn:aws:s3:::bucketname"]
},
{
"Effect": "Allow",
"Action": ["s3:GetObject"],
"Resource": [
"arn:aws:s3:::bucketname/firstlevel",
"arn:aws:s3:::bucketname/firstlevel/*"
]
},
{
"Effect": "Allow",
"Action": ["s3:*"],
"Resource": [
"arn:aws:s3:::bucketname/firstlevel/secondlevel*",
"arn:aws:s3:::bucketname/firstlevel/secondlevel/*"
]
}
]
}