Got error when create new Scheduler with EventBridge: "The execution role you provide must allow AWS EventBridge Scheduler to assume the role"

0

Hi all, I am trying to create a new scheduler following this article https://docs.aws.amazon.com/eventbridge/index.html But I face the error when confirming at the final step: "The execution role you provide must allow AWS EventBridge Scheduler to assume the role" Do you have any idea how to fix the missing permission?

The execution role you provide must allow AWS EventBridge Scheduler to assume the role

已提问 1 年前2628 查看次数
4 回答
0

Hi there, yes I already added trusted entities like this, but still got the error when creating the scheduler. added trusted entities

已回答 1 年前
  • Can I set it up by changing aws:SourceArn as follows?

    arn:aws:scheduler:ap-southeast-1:xxxxxx:schedule/xxxx_ScheduleGroup*
    
  • Hi there, tried update aws:SourceAccount as your suggested, but still got the error "The execution role you provide must allow AWS EventBridge Scheduler to assume the role."

  • Is the "condition" part absolutely necessary? If it is not needed, it can be deleted.

0

An execution role is an IAM role that EventBridge Scheduler assumes in order to interact with other AWS services on your behalf. You attach permission policies to this role to grant EventBridge Scheduler access to invoke targets.

Please see a reference example for the same : https://docs.aws.amazon.com/scheduler/latest/UserGuide/setting-up.html

profile pictureAWS
专家
已回答 1 年前
  • Yes, followed the doc for both "Create new role" or "Use existing role" but still stuck with the error "The execution role you provide must allow AWS EventBridge Scheduler to assume the role."

0

This can occur when there is no "sts:AssumeRole" in "scheduler.amazonaws.com" in the trusted entity of the execution role that was set when creating the EventBridge Scheduler.
Check to see if the following entities are set up.

{
    "Version": "2012-10-17",
    "Statement": [
        {
            "Effect": "Allow",
            "Principal": {
                "Service": "scheduler.amazonaws.com"
            },
            "Action": "sts:AssumeRole"
        }
    ]
}
profile picture
专家
已回答 1 年前
0

I gave up and switched to Google Cloud Scheduler https://firebase.google.com/docs/functions/schedule-functions, everything working fine now. Thanks all!

已回答 1 年前

您未登录。 登录 发布回答。

一个好的回答可以清楚地解答问题和提供建设性反馈,并能促进提问者的职业发展。

回答问题的准则

相关内容