You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
To fix an earlier problem with students being unable to launch an EMR job we added a pre-baked policy to the stat157-students group from Amazon called:
That had the unintended side-effect of allowing access to ALL of the S3 buckets!
I am going to modify the rule to remove the permissive s3:* part and test it in my own cloud101 AWS root account first... and then apply it to the students' EMR policy (the one linked above).
After I test it with my account I will send another email to let you know that I will apply it to the s157 account so that you can watch for unintended side-effects of THAT change.
The text was updated successfully, but these errors were encountered:
To avoid problems like...
To fix an earlier problem with students being unable to launch an EMR job we added a pre-baked policy to the stat157-students group from Amazon called:
AmazonElasticMapReduceFullAccess-stat157-students-201410301002
That had the unintended side-effect of allowing access to ALL of the S3 buckets!
I am going to modify the rule to remove the permissive s3:* part and test it in my own cloud101 AWS root account first... and then apply it to the students' EMR policy (the one linked above).
After I test it with my account I will send another email to let you know that I will apply it to the s157 account so that you can watch for unintended side-effects of THAT change.
The text was updated successfully, but these errors were encountered: