AWS Cluster Roles needed
search cancel

AWS Cluster Roles needed

book

Article ID: 260153

calendar_today

Updated On:

Products

CA Privileged Access Manager (PAM)

Issue/Introduction

When configuring an AWS PAM cluster, we need to populate the AWS Provision. 

To do so, we need an AWS Account in PAM to be able to configure the option. 

Unfortunately our documentation doesn't specify the exact AWS Roles that are needed.  

Environment

Release : 4.1.x

Resolution

These are the minimum roles you need:

  • “ec2:AssignPrivateIpAddresses”
  • “ec2:AttachNetworkInterface”
  • “ec2:UnassignPrivateIpAddresses”
  • “ec2:DescribeNetworkInterfaces”