aws.signature icon indicating copy to clipboard operation
aws.signature copied to clipboard

aws.signature pkg - cross account access with temporary tokens

Open dineshj3d opened this issue 7 years ago • 0 comments

See below. Does aws.signature pkg support cross account profiles? I have situation where there is a special login profile (abcdef) which has a temporary token set(this token is periodically refreshed a utility). I need to access resources (like S3, SQS) in account with Profile marketingadmin. Both these profiles are separate accounts. When I try say list_queues etc, I get invalid token.

Any help appreciated. PS - If you need, I can send precise configuration and error messages

Dinesh

[profile marketingadmin]
role_arn = arn:aws:iam::123456789012:role/marketingadmin
source_profile = abcdef

[abcdef]
aws_access_key_id=AKIAIOSFODNN7EXAMPLE
aws_secret_access_key=wJalrXUtnFEMI/K7MDENG/bPxRfiCYEXAMPLEKEY
token= AQoDYXdzEPT//////////wEXAMPLEtc764bNrC9SAPBSM22wDOk4x4HIZ8j4FZTwdQWLWsKWHGBuFqwAeMicRXmxfpSPfIeoIYRqT
flfKD8YUuwthAx7mSEI/qkPpKPi/kMcGdQrmGdeehM4IC1NtBmUpp2wUE8phUZampKsburEDy0KPkyQDYwT7WZ0wq5VSXDvp75YU9
HFvlRd8Tx6q6fE8YQcHNVXAkiY9q6d+xo0rKwT38xVqr7ZD0u0iPPkUL64lIZbqBAz+scqKmlzm8FDrypNC9Yjc8fPOLn9FX9KSYv
KTr4rvx3iSIlTJabIQwj2ICCR/oLxBA==

dineshj3d avatar Nov 05 '17 22:11 dineshj3d