provider "aws" { region = "eu-west-3" version = "3.19.0" } resource "aws_signer_signing_profile" "example" { name_prefix = "example" platform_id = "AWSLambda-SHA384-ECDSA" } resource "aws_lambda_code_signing_config" "example" { allowed_publishers { signing_profile_version_arns = [aws_signer_signing_profile.example.version_arn] } policies { untrusted_artifact_on_deployment = "Enforce" } } resource "aws_iam_role" "test-iam_for_lambda" { name = "iam_for_lambda" assume_role_policy = <