diff --git a/packages/aws-cdk-lib/aws-eks/README.md b/packages/aws-cdk-lib/aws-eks/README.md index 4e03e066dab05..72c39be8ddd91 100644 --- a/packages/aws-cdk-lib/aws-eks/README.md +++ b/packages/aws-cdk-lib/aws-eks/README.md @@ -400,7 +400,10 @@ const cluster = new eks.Cluster(this, 'cluster-to-rename', { // allow the cluster admin role to delete the cluster 'foo' cluster.adminRole.addToPolicy(new iam.PolicyStatement({ - actions: ['eks:DeleteCluster'], + actions: [ + 'eks:DeleteCluster', + 'eks:DescribeCluster', + ], resources: [ Stack.of(this).formatArn({ service: 'eks', resource: 'cluster', resourceName: 'foo' }), ]