GovCloud¶
TRiA supports GovCloud as well. As many GovCloud users know, GovCloud has different services than commerical AWS. Use these policies when using TRiA in GovCloud. After copying one of these policies, then follow the steps outlined here.
TRiA Standard User Policy - GovCloud¶
{
"Version": "2012-10-17",
"Statement": [
{
"Action": [
"autoscaling:Describe*",
"cloudformation:Describe*",
"cloudformation:List*",
"cloudformation:Get*",
"cloudtrail:Describe*",
"cloudtrail:List*",
"cloudtrail:Get*",
"cloudwatch:Describe*",
"cloudwatch:List*",
"cloudwatch:Get*",
"config:Describe*",
"dynamodb:Describe*",
"dynamodb:List*",
"ec2:Describe*",
"ec2:List*",
"ec2:Get*",
"ecr:Describe*",
"elasticache:Describe*",
"elasticache:List*",
"elasticache:Get*",
"elasticfilesystem:Describe*",
"elasticloadbalancing:Describe*",
"elasticloadbalancing:List*",
"elasticloadbalancing:Get*",
"elasticmapreduce:List*",
"es:Describe*",
"es:List*",
"directconnect:Describe*",
"iam:Describe*",
"iam:List*",
"iam:GenerateCredentialReport",
"iam:Get*",
"kinesis:List*",
"kms:List*",
"kms:Get*",
"kms:Describe*",
"lambda:Get*",
"lambda:List*",
"logs:Describe*",
"rds:Describe*",
"rds:List*",
"rds:Get*",
"redshift:Describe*",
"redshift:List*",
"redshift:Get*",
"s3:Describe*",
"s3:List*",
"s3:Get*",
"sns:List*",
"sqs:Get*",
"sqs:List*",
"tag:Get*",
"workspaces:Describe*"
],
"Effect": "Allow",
"Resource": "*"
}
]
}
TRiA Power User Policy - GovCloud¶
{
"Version": "2012-10-17",
"Statement": [
{
"Action": [
"autoscaling:*",
"cloudformation:*",
"cloudtrail:*",
"cloudwatch:*",
"config:*",
"dynamodb:*",
"directconnect:*",
"ec2:*",
"ecr:*",
"elasticache:*",
"elasticfilesystem:*",
"elasticloadbalancing:*",
"elasticmapreduce:List*",
"es:*",
"iam:*",
"kinesis:*",
"kms:*",
"lambda:*",
"logs:*",
"rds:*",
"redshift:*",
"s3:*",
"sns:*",
"sqs:*",
"tag:*",
"workspaces:*"
],
"Effect": "Allow",
"Resource": "*"
}
]
}