Skip to content

Instantly share code, notes, and snippets.

@cayblood
Created February 26, 2020 00:15
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save cayblood/fc0b42967a2b670ccff062daf38e3945 to your computer and use it in GitHub Desktop.
Save cayblood/fc0b42967a2b670ccff062daf38e3945 to your computer and use it in GitHub Desktop.
Policy attached to fabric client machine role that connects to Amazon Managed Blockchain networks.
{
"Version": "2012-10-17",
"Statement": [
{
"Sid": "ManageNetworkResources",
"Effect": "Allow",
"Action": [
"managedblockchain:CreateProposal",
"managedblockchain:GetProposal",
"managedblockchain:DeleteMember",
"managedblockchain:VoteOnProposal",
"managedblockchain:ListProposals",
"managedblockchain:GetNetwork",
"managedblockchain:ListMembers",
"managedblockchain:ListProposalVotes",
"managedblockchain:RejectInvitation",
"managedblockchain:GetNode",
"managedblockchain:GetMember",
"managedblockchain:DeleteNode",
"managedblockchain:CreateNode",
"managedblockchain:CreateMember",
"managedblockchain:ListNodes"
],
"Resource": [
"arn:aws:managedblockchain:us-east-1::networks/*",
"arn:aws:managedblockchain:us-east-1::proposals/*",
"arn:aws:managedblockchain:us-east-1:123456789012:members/*",
"arn:aws:managedblockchain:us-east-1:123456789012:invitations/*",
"arn:aws:managedblockchain:us-east-1:123456789012:nodes/*"
]
},
{
"Sid": "WorkWithNetworksForAcct",
"Effect": "Allow",
"Action": [
"managedblockchain:ListNetworks",
"managedblockchain:ListInvitations",
"managedblockchain:CreateNetwork"
],
"Resource": "*"
},
{
"Sid": "AccessAmbBucket",
"Effect": "Allow",
"Action": [
"s3:GetObject"
],
"Resource": "arn:aws:s3:::us-east-1.managedblockchain/*"
}
]
}
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment