alphagov/gsp

Add a way to configure the IAM roles available for use by kiam

Closed this issue · 3 comments

As an SRE I want to be able to define new roles for use by kiam without having to modify the core platform terraform

This sounds like a job for the svc-operator now it exists

I'm not sure we should have arbitrary roles - tenants should only have access to the AWS resources they request to be created.

I think we can look at this if/when it comes up as something tenants need/ask for.