aws-cloudformation / aws-cloudformation/cloudformation-coverage-roadmap
PutSubscriptionFilter API call does not support the iam:PassedToService condition key.
- Dominant language
- No language data
- Stars
- 1.1k
- Forks
- 62
- PR merge metrics
- No merged PRs in 30d
Description
### Name of the resource
AWS::Logs::SubscriptionFilter
### Resource name
_No response_
### Description
This is a request to allow PutSubscriptionFilter API to support the iam:PassedToService condition key.
Currently,
PutSubscriptionFilter does not seem to populate condition key iam:PassedToService with either logs.amazonaws.com or logs.{region}.amazonaws.com, and the permission would need to be restricted using Role ARN in resource section.
### Other Details
_No response_
Contributor guide
Research direction
Start with the AWS::Logs::SubscriptionFilter resource and the PutSubscriptionFilter API behavior described in this issue. Verify whether iam:PassedToService is populated for logs.amazonaws.com or logs.{region}.amazonaws.com, and consider the work complete when the API supports that condition key as requested.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- aws
- Domain
- cloud
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 25/100