From 7133bbaae519fd9f50374a24156da6a0779b546a Mon Sep 17 00:00:00 2001 From: bsatoriu <27687558+bsatoriu@users.noreply.github.com> Date: Wed, 23 Oct 2024 15:22:03 -0700 Subject: [PATCH] Bug/user bucket inline policy (1126) (#145) * expand inline folder policy to support reading/writing * Update members.py --------- Co-authored-by: bsatoriu --- api/endpoints/members.py | 10 ++++++++++ 1 file changed, 10 insertions(+) diff --git a/api/endpoints/members.py b/api/endpoints/members.py index 68dee1c..98231aa 100755 --- a/api/endpoints/members.py +++ b/api/endpoints/members.py @@ -691,6 +691,16 @@ def get(self): "s3:ListMultipartUploadParts", "s3:AbortMultipartUpload" ], + "Resource": [ + "arn:aws:s3:::{settings.WORKSPACE_BUCKET}/{maap_user.username}/*" + ] + }}, + {{ + "Sid": "GrantListAccess", + "Effect": "Allow", + "Action": [ + "s3:ListBucket" + ], "Resource": "arn:aws:s3:::{settings.WORKSPACE_BUCKET}", "Condition": {{ "StringLike": {{