Closed alexcasalboni closed 3 years ago
This has been addressed in today's commit. The ARN is now passed as parameter to SAM during deployment. https://github.com/aws-samples/aws-serverless-workshop-innovator-island/blob/main/5-park-stats/2-simulator/README.md
The simular app includes this policy:
Since we've just created the Kinesis Firehose Delivery Stream, it'd be pretty straightforward to show customers how to update this policy with the Delivery Stream ID (instead of
Resource: '*'
), using theStreamName
CloudFormation parameter.Or we could at least limit the policy to that specific stream name in all regions: