IAM role settings
To use this function without restriction, add the following authority to the IAM role registered in AppKeeper.
When using policies managed by AWS
Please select the following two policies.
- AmazonS3FullAccess
- Necessary to remove the limitation of the number of characters output by SSM.
- CloudWatchReadOnlyAccess
- Required to get CloudWatch values.
When using user-managed policies
Service
- CloudWatch
Action
- GetMetricStatistics
Resource
- Check "All resources".
Service
- S3
Action
- putObject
- putObjectAcl
Resource
- Click Add ARN and enter the following
-
arn:aws:s3:::coati-command-output-product/*
-
IAM Policies(JSON)
{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Action": [
"cloudwatch:GetMetricStatistics"
],
"Resource": "*"
},
{
"Effect": "Allow",
"Action": [
"s3:PutObject",
"s3:PutObjectAcl"
],
"Resource": "arn:aws:s3:::coati-command-output-product/*"
}
]
}
Comments
0 comments
Please sign in to leave a comment.