[tecken infra] prefix condition on s3:DeleteObject permissions

RESOLVED INVALID

Status

Socorro
Symbols
RESOLVED INVALID
4 months ago
2 months ago

People

(Reporter: miles, Unassigned)

Tracking

Firefox Tracking Flags

(Not tracked)

Details

(Reporter)

Description

4 months ago
We should only allow tecken to delete objects from symbols buckets when they are in the inbox/ prefix, which it uses for temp files.
(Reporter)

Comment 1

4 months ago
I've implemented a test policy that does this for both the stage and prod symbols buckets in webeng.
We'll have to see if it works.
(Reporter)

Comment 2

3 months ago
Update: for the moment, this policy is disabled. We weren't able to get it to work properly.
We're no longer deleting anything.
Status: NEW → RESOLVED
Last Resolved: 2 months ago
Resolution: --- → INVALID
You need to log in before you can comment on or make changes to this bug.