# iam roles resource "aws_iam_role" "app-ec2-role" { name = "app-ec2-role" assume_role_policy = <