stocky-spoon-28903
10/18/2018, 3:04 PMconst policyDoc = pulumi.all([kmsKey.arn, keyBucket.arn])
.apply(([kmsARN, bucketARN]) => {
const policy: aws.iam.PolicyDocument = {
Version: "2012-10-17",
Statement: [
{
Sid: "AllowEncryptDecrypt",
Effect: "Allow",
Action: [
"kms:Encrypt",
],
Resource: [
kmsARN, // This is a reified string
],
},