Wait, wtf? You can't restrict IAM perms to CloudFront distributions? Resource has to be "*"? http://docs.aws.amazon.com/AmazonCloudFront/latest/DeveloperGuide/cf-api-permissions-ref.html …
-
-
Replying to @hichaelmart
(currently debugging why I keep getting perm errors when the IAM role has a Resource of a specific distribution ARN... only works with "*"!)
1 reply 0 retweets 0 likes -
Replying to @hichaelmart
So basically you give a user access to update some test cloudfront distribution and now they can completely bork your production one...


2 replies 0 retweets 0 likes -
Replying to @hichaelmart
I'm finna write a proper code as infra lib for AWS. Call APIs directly. No more cloud formation
1 reply 0 retweets 0 likes -
Replying to @southpolesteve
Still ain't gonna get around this though – ain't nothing to do with CloudFormation
2 replies 0 retweets 0 likes -
Replying to @hichaelmart
Ha. I see now. But I still want you to know. My solution to any cloud formation problem is
@fastly2 replies 0 retweets 0 likes
Dammit. Cloudfront. 
5:34 PM - 23 Apr 2017
0 replies
0 retweets
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.