1 Answer
- Newest
- Most votes
- Most comments
0
Hello.
Is it correct that AdministratorAccess is set for the IAM user "banana-jenkins"?
Does your AWS account use Organizations or similar to set up guardrails with SCP?
If SCP is set, there is a possibility that it is rejected by SCP.
https://docs.aws.amazon.com/organizations/latest/userguide/orgs_manage_policies_scps.html
Basically, if AdministratorAccess is set, I think all Route53 operations are permitted.
The only thing restricted is the source IP to our Jenkins cluster
What does it mean to be restricted by IP?
Does this mean that it is set using an IAM condition key?
Relevant content
- asked a year ago
- asked 9 months ago
- AWS OFFICIALUpdated 2 years ago
- AWS OFFICIALUpdated 2 years ago
- AWS OFFICIALUpdated a year ago
- AWS OFFICIALUpdated a year ago
Can you post the content of your IAM permission policy... (sanitize IPs first)