我正试图按照这里指令创建一个IAM策略。
当我尝试添加这个策略时
{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Action": [
"route53:ChangeResourceRecordSets"
],
"Resource": [
"arn:aws:route53:::hostedzone/*"
]
},
{
"Effect": "Allow",
"Action": [
"route53:ListHostedZones",
"route53:ListResourceRecordSets"
],
"Resource": [
"*"
]
}
]
}使用此命令:
aws iam create-role --role-name externaldns --assume-role-policy-document file://external_dns.json 我得到以下错误
An error occurred (MalformedPolicyDocument) when calling the CreateRole operation: Has prohibited field Resource我希望能就此提供指导。
发布于 2022-10-14 11:50:14
{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Action": [
"route53:ChangeResourceRecordSets"
],
"Resource": [
"arn:aws:route53:::hostedzone/*"
],
},
{
"Effect": "Allow",
"Action": [
"route53:ListHostedZones",
"route53:ListResourceRecordSets"
],
"Resource": [
"*"
],
}
]
}您在,之后忘记了两个"Resource":[],字符。
https://stackoverflow.com/questions/74068243
复制相似问题