Permissions for @turbot/aws-dax
Taking a look at permissions and associated grant levels for each permission for DAX:
Permission | Grant Level | Help |
---|---|---|
dax:CreateCluster | Admin | "Admins need 'dax:CreateCluster' to attach the applicable service role for cluster settings." |
dax:DeleteCluster | Admin | "Admins need 'dax:DeleteCluster' to attach the applicable service role for cluster settings." |
dax:DeleteItem | Operator | |
dax:DescribeClusters | Metadata | |
dax:GetItem | Metadata | |
dax:ListTags | Metadata | |
dax:PutItem | Operator | |
dax:Query | Operator | |
dax:RebootNode | Operator | |
dax:Scan | Admin | "Admins need 'dax:Scan' to attach the applicable service role for cluster settings." |
dax:TagResource | Operator | |
dax:UntagResource | Operator | |
dax:UpdateCluster | Admin | "Admins need 'dax:UpdateCluster' to attach the applicable service role for cluster settings." |
dax:UpdateItem | Operator | |
iam:GetRole | Metadata | |
iam:PassRole | Admin | "Admins need 'iam:PassRole' to attach the applicable service role for cluster settings." |