Elmer Security Updates

With this latest Elmer release we’ve improved security on the AWS account side by reducing the permission scope of the Elmer master IAM role policy and added an alias the Elmer KMS key.

Bearse Master Role Policy

The policy has been restricted to just the actions and resources elmer creates and manages through the elmerchild Cloudformation stack. The policy now looks like: