Skip to content

IAM/Secrets Manager/ECS: Consolidate IAM policies under path #18458

@automartin5000

Description

@automartin5000

Description

Best practice of Secrets Manager recommends the use of using an env/ path pattern for secrets naming. CDK should detect the use of this pattern and consolidate IAM policies under env/*, especially when using the aws_ecs.secret construct.

Use Case

Simplify IAM policies, but also to solve this bug: #18457

Proposed Solution

Switch from inline policies to managed policies: #7448

Other information

No response

Acknowledge

  • I may be able to implement this feature request
  • This feature might incur a breaking change

Metadata

Metadata

Assignees

No one assigned

    Labels

    @aws-cdk/aws-iamRelated to AWS Identity and Access Managementclosed-for-stalenessThis issue was automatically closed because it hadn't received any attention in a while.effort/mediumMedium work item – several days of effortfeature-requestA feature should be added or improved.p2

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions