aws-secure-environment-accelerator
aws-secure-environment-accelerator copied to clipboard
[BUG][DOCS] SSM QS Patching - Custom IAM Profile?
Bug reports which fail to provide the required information will be closed without action.
Required Basic Info
- Accelerator Version: (eg. v1.5.9-b)
- Install Type: N/A
- Document filename: https://aws-samples.github.io/aws-secure-environment-accelerator/latest/guides/ssm-quick-setup-patching/ssm-quick-setup-patching-configuration/#124-post-deployment-checks
Describe the bug
In the SSM Quick Setup Patching Patching guide, the post-deployment checks instruct you to create an EC2 instance and Ensure that the EC2-Default-SSM-AD-Role is selected as the IAM Profile
.
Does this mean that SSM QS Patching in ASEA will only work with the EC2-Default-SSM-AD-Role?
What if customers want to use a custom IAM profile on their EC2 instances? Will they have to add the required policies and tags manually to this role?