Permissions issue in accessing kms-encrypted bucket using Media Convert from another account
0
For accessing kms-encrypted bucket from Media Convert in local account, an in-line policy is required for the Media Convert role, not clear if applying that on the remote account would help, I thought it would not.
https://docs.aws.amazon.com/mediaconvert/latest/ug/granting-permissions-for-mediaconvert-to-access-encrypted-s3-buckets.html
Have bucket access generally (bucket + kms key permissions allow access from other roles in the remote account), but not via Media Convert.
Any help/pointers appreciated.