1回答
- 新しい順
- 投票が多い順
- コメントが多い順
2
Hi,
Your issue is probably not in the trust policy for the role but in the authorizations given to this role.
Have a look at https://docs.aws.amazon.com/AmazonECR/latest/userguide/ECR_on_EKS.html
You can use your Amazon ECR images with Amazon EKS, but you need to satisfy
the following prerequisites.
For Amazon EKS workloads hosted on managed or self-managed nodes, the Amazon
EKS worker node IAM role (NodeInstanceRole) is required. The Amazon EKS worker
node IAM role must contain the following IAM policy permissions for Amazon ECR.
{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Action": [
"ecr:BatchCheckLayerAvailability",
"ecr:BatchGetImage",
"ecr:GetDownloadUrlForLayer",
"ecr:GetAuthorizationToken"
],
"Resource": "*"
}
]
}
Best,
Didier
関連するコンテンツ
- AWS公式更新しました 1年前