1回答
- 新しい順
- 投票が多い順
- コメントが多い順
0
Okay, i suppose i found the answer myself, i probably need to add something like
"Condition": {
"StringEquals": {
"iam:ResourceTag/SSMSessionRunAs": "${aws:username}"
}
}
to the "Trust relationship" in the Role. Then each user will need to provide exact the same Tag while assuming the role as their IAM username is, and by using this separation i can separate users in EC2 instance.
回答済み 2年前
$PSStyle.OutputRendering = 'PlainText'