Creating a role for IAM Roles anywhere requires a trust policy with sts:SetSourceIdentity #21186
-
Hi,
Thank you for your help. |
Beta Was this translation helpful? Give feedback.
Replies: 4 comments
-
So I guess this is missing from CDK, Hope this helps someone |
Beta Was this translation helpful? Give feedback.
-
Hello! Reopening this discussion to make it searchable. |
Beta Was this translation helpful? Give feedback.
-
I was stuck on this trying to create a role with trusted relationship for EKS Pod Identities and got that resolved by
|
Beta Was this translation helpful? Give feedback.
-
You can also update the role policy after creating the CDK Role object
|
Beta Was this translation helpful? Give feedback.
So I guess this is missing from CDK,
until its added, I wrote this blog on IAM Roles anywhere, which also includes a fully working CDK example:
https://medium.com/cyberark-engineering/calling-aws-services-from-your-on-premises-servers-using-iam-roles-anywhere-3e335ed648be
Hope this helps someone