Skip to content

Conversation

@Balvinder-1995
Copy link
Contributor

@Balvinder-1995 Balvinder-1995 commented Nov 17, 2025

Description

In order for the Flow Log to be able to create log streams in Cloudwatch log group, the policy should have " :* "

Motivation and Context

Resolves #1262

Breaking Changes

No Breaking Changes.

How Has This Been Tested?

  • I have tested the same in one of my test aws account and have verified that the changes does change the IAM Policy and VPC flow log's IAM role is able to create logStream in logGroup.

  • I have executed pre-commit run -a on my pull request

@bryantbiggs bryantbiggs merged commit de13700 into terraform-aws-modules:master Nov 17, 2025
23 checks passed
antonbabenko pushed a commit that referenced this pull request Nov 17, 2025
## [6.5.1](v6.5.0...v6.5.1) (2025-11-17)

### Bug Fixes

* Correction with IAM role policy associated with modules/flow-log ([#1264](#1264)) ([de13700](de13700))
@antonbabenko
Copy link
Member

This PR is included in version 6.5.1 🎉

@Balvinder-1995 Balvinder-1995 deleted the fix/iam-perm-vpc-flow-logs branch November 17, 2025 14:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

VPC Flow Logs Policy does not allow creation of log streams in CW

3 participants