Permissions for @turbot/aws-dax

Taking a look at permissions and associated grant levels for each permission for DAX:

PermissionGrant LevelHelp
dax:CreateClusterAdmin"Admins need 'dax:CreateCluster' to attach the applicable service role for cluster settings."
dax:DeleteClusterAdmin"Admins need 'dax:DeleteCluster' to attach the applicable service role for cluster settings."
dax:DeleteItemOperator
dax:DescribeClustersMetadata
dax:GetItemMetadata
dax:ListTagsMetadata
dax:PutItemOperator
dax:QueryOperator
dax:RebootNodeOperator
dax:ScanAdmin"Admins need 'dax:Scan' to attach the applicable service role for cluster settings."
dax:TagResourceOperator
dax:UntagResourceOperator
dax:UpdateClusterAdmin"Admins need 'dax:UpdateCluster' to attach the applicable service role for cluster settings."
dax:UpdateItemOperator
iam:GetRoleMetadata
iam:PassRoleAdmin"Admins need 'iam:PassRole' to attach the applicable service role for cluster settings."