diff --git a/modules/iam-role-for-service-accounts-eks/policies.tf b/modules/iam-role-for-service-accounts-eks/policies.tf index 96f20b81..5c8199ab 100644 --- a/modules/iam-role-for-service-accounts-eks/policies.tf +++ b/modules/iam-role-for-service-accounts-eks/policies.tf @@ -558,6 +558,7 @@ data "aws_iam_policy_document" "external_secrets" { "secretsmanager:GetSecretValue", "secretsmanager:DescribeSecret", "secretsmanager:ListSecretVersionIds", + "secretsmanager:BatchGetSecretValue", ] resources = var.external_secrets_secrets_manager_arns }