{ "Version": "2012-10-17", "Statement": [ { "Effect": "Allow", "Principal": { "AWS": "AWS_ROLE_ARN" }, "Action": "sts:AssumeRole" } ] }