Got error when create new Scheduler with EventBridge: "The execution role you provide must allow AWS EventBridge Scheduler to assume the role"

0

Hi all, I am trying to create a new scheduler following this article https://docs.aws.amazon.com/eventbridge/index.html But I face the error when confirming at the final step: "The execution role you provide must allow AWS EventBridge Scheduler to assume the role" Do you have any idea how to fix the missing permission?

The execution role you provide must allow AWS EventBridge Scheduler to assume the role

demandé il y a un an2628 vues
4 réponses
0

Hi there, yes I already added trusted entities like this, but still got the error when creating the scheduler. added trusted entities

répondu il y a un an
  • Can I set it up by changing aws:SourceArn as follows?

    arn:aws:scheduler:ap-southeast-1:xxxxxx:schedule/xxxx_ScheduleGroup*
    
  • Hi there, tried update aws:SourceAccount as your suggested, but still got the error "The execution role you provide must allow AWS EventBridge Scheduler to assume the role."

  • Is the "condition" part absolutely necessary? If it is not needed, it can be deleted.

0

An execution role is an IAM role that EventBridge Scheduler assumes in order to interact with other AWS services on your behalf. You attach permission policies to this role to grant EventBridge Scheduler access to invoke targets.

Please see a reference example for the same : https://docs.aws.amazon.com/scheduler/latest/UserGuide/setting-up.html

profile pictureAWS
EXPERT
répondu il y a un an
  • Yes, followed the doc for both "Create new role" or "Use existing role" but still stuck with the error "The execution role you provide must allow AWS EventBridge Scheduler to assume the role."

0

This can occur when there is no "sts:AssumeRole" in "scheduler.amazonaws.com" in the trusted entity of the execution role that was set when creating the EventBridge Scheduler.
Check to see if the following entities are set up.

{
    "Version": "2012-10-17",
    "Statement": [
        {
            "Effect": "Allow",
            "Principal": {
                "Service": "scheduler.amazonaws.com"
            },
            "Action": "sts:AssumeRole"
        }
    ]
}
profile picture
EXPERT
répondu il y a un an
0

I gave up and switched to Google Cloud Scheduler https://firebase.google.com/docs/functions/schedule-functions, everything working fine now. Thanks all!

répondu il y a un an

Vous n'êtes pas connecté. Se connecter pour publier une réponse.

Une bonne réponse répond clairement à la question, contient des commentaires constructifs et encourage le développement professionnel de la personne qui pose la question.

Instructions pour répondre aux questions