1 Respuesta
- Más nuevo
- Más votos
- Más comentarios
0
Are you using AWS SSO Permission Sets to assign IAM policies to your users? https://docs.aws.amazon.com/singlesignon/latest/userguide/iam-auth-access-overview.html. As you suggest you are applying an inline policy I would assume not (since inline policies only apply to IAM users)?
If you are using SSO Permission Sets, then the read only permission set AWSReadOnlyAccess
which uses the AWS Managed Policy arn:aws:iam::aws:policy/job-function/ViewOnlyAccess
does not specifically include STS:* as a permission. Therefore I would assume that it is being implicitly denied.
If you could clarify it would help greatly.
respondido hace 2 años
Contenido relevante
- OFICIAL DE AWSActualizada hace 2 años
- OFICIAL DE AWSActualizada hace un año
- OFICIAL DE AWSActualizada hace un año
- OFICIAL DE AWSActualizada hace un año