Skip to content

Latest commit

 

History

4 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

CSM

Silly tool for debugging AWS IAM policies.

Refer to the official docs for details

Installation

go get github.com/pschulten/csm

or download the binary from the releases

Usage

Run the server in one shell:

csm

Enable CSM and do some AWS API calls in another shell:

export AWS_CSM_ENABLED=true
aws kms describe-key --key-id 5492cc29-0843-40e7-87e5-c677959bc7dd
aws s3 ls
aws s3 ls s3://ALLOWED_BUCKET
aws s3 ls s3://FORBIDDEN_BUCKET

See your report in the first shell. Stop the server with C-c.

$ csm
200 KMS:DescribeKey                                    kms.eu-central-1.amazonaws.com
200 S3:ListBuckets                                     s3.eu-central-1.amazonaws.com
200 S3:ListObjectsV2                                   ALLOWED_BUCKET.s3.eu-central-1.amazonaws.com
403 S3:ListObjectsV2                                   FORBIDDEN_BUCKET.s3.eu-central-1.amazonaws.com
^C
$ 

About

No description, website, or topics provided.

Resources

Stars

6 stars

Watchers

1 watching

Forks

Releases

Packages

Used by

Contributors

Languages