我正在尝试创建一个DMS (数据库迁移服务)实例,但是我得到了以下错误:
SYSTEM ERROR MESSAGE:The IAM Role arn:aws:iam::<account_id>:role/dms-vpc-role is not configured properly我应该创建什么角色,我应该把它分配给什么?
发布于 2019-10-24 13:25:25
您需要允许DMS承担一个角色:
创建dmsAssumeRolePolicyDocument.json文件的
{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Principal": {
"Service": "dms.amazonaws.com"
},
"Action": "sts:AssumeRole"
}
]
}aws iam create-role --role-name dms-vpc-role --assume-role-policy-document file:///tmp/dmsAssumeRolePolicyDocument.json
aws iam attach-role-policy --role-name dms-vpc-role --policy-arn arn:aws:iam::aws:policy/service-role/AmazonDMSVPCManagementRole
现在您可以继续在控制台中创建DMS实例,或者使用awscli。
https://stackoverflow.com/questions/58542334
复制相似问题