# You can use any of these parameters to create conditions or mappings in your template. Parameters: App: Type: String Description: Your application's name. Env: Type: String Description: The environment name your service, job, or workflow is being deployed to. Name: Type: String Description: The name of the service, job, or workflow being deployed. Resources: SubnetsAccessPolicy: Type: AWS::IAM::ManagedPolicy Properties: PolicyDocument: Version: 2012-10-17 Statement: - Sid: EC2Actions Effect: Allow Action: - ec2:DescribeSubnets Resource: "*" Outputs: # You also need to output the IAM ManagedPolicy so that Copilot can inject it to your ECS task role. SubnetsAccessPolicyArn: Description: "The ARN of the Policy to attach to the task role." Value: !Ref SubnetsAccessPolicy