AWS Glue Crawler creation given access denied issue to root user

0

Hi Team, I am getting below error while creating Crawler in AWS Glue using root account. While same functionality was working till November 2022.

One crawler failed to create The following crawler failed to create: "TestDb" Here is the most recent error message: Account <RootUser> is denied access.

Please reply asap.

4 Answers
0
Accepted Answer

I got the reply from Aws support team as Answer

Hello there,

Thank you for your continued patience while we reviewed your request.

In order to get the issue with Glue Service resolved for you, I reached out to the service team. After evaluating the request, the Service Team has resolved the issue.

★ You would be able to run a crawler or create a job in AWS Glue Service.

I do believe this resolves your query, and you are more than welcome to resolve this case should you wish to.

Otherwise, you can reply to this case via your Support Center should you have any further questions.

profile picture
answered a year ago
profile picture
EXPERT
reviewed 2 months ago
0

Only Service Control Policy (SCP) of AWS Organizations is able to deny actions by root account. Is your account provided by the organization you belong? If so, You should confirm with the AWS Organizations administrator. I can check the details if you share CloudTrail log that is filtered by the denied action. By the way, It is recommended not to use the root account. You should use IAM users/roles or AWS SSO users.

imiky
answered a year ago
0

I tried with others account also but it is giving same error. Root account, I used to check as my other account was showing same error but after using root account I saw same issue. It is personal root account. I saw multiple post with same issue but didn't find solution as answer in that. I think AWS restricted free tier account to access Glue service but didn't find any information for same.

profile picture
answered a year ago
0

Does the IAM role for Glue have trust policy to Glue service and permission plolicy to the data source? Can you check resource policy of data source and permission for KMS key also?

imiky
answered a year ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions