You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: latest/ug/security/iam-reference/security-iam-awsmanpol.adoc
+7-7Lines changed: 7 additions & 7 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -94,13 +94,13 @@ You can attach `AmazonEKSMCPReadOnlyAccess` to your IAM entities. This policy pr
94
94
95
95
This policy includes the following permissions that allow principals to complete the following tasks:
96
96
97
-
* *`eks`*&endash; Allows principals to describe and list EKS clusters, node groups, add-ons, access entries, insights, and access the Kubernetes API for read-only operations.
98
-
* *`iam`*&endash; Allows principals to retrieve information about IAM roles, policies, and their attachments to understand the permissions associated with EKS resources.
99
-
* *`ec2`*&endash; Allows principals to describe VPCs, subnets, and route tables to understand the network configuration of EKS clusters.
100
-
* *`sts`*&endash; Allows principals to retrieve caller identity information for authentication and authorization purposes.
101
-
* *`logs`*&endash; Allows principals to start queries and retrieve query results from CloudWatch Logs for troubleshooting and monitoring.
102
-
* *`cloudwatch`*&endash; Allows principals to retrieve metric data for monitoring cluster and workload performance.
103
-
* *`eks-mcp`*&endash; Allows principals to invoke MCP operations and call read-only tools within the Amazon EKS MCP Server.
97
+
* *`eks`*- Allows principals to describe and list EKS clusters, node groups, add-ons, access entries, insights, and access the Kubernetes API for read-only operations.
98
+
* *`iam`*- Allows principals to retrieve information about IAM roles, policies, and their attachments to understand the permissions associated with EKS resources.
99
+
* *`ec2`*- Allows principals to describe VPCs, subnets, and route tables to understand the network configuration of EKS clusters.
100
+
* *`sts`*- Allows principals to retrieve caller identity information for authentication and authorization purposes.
101
+
* *`logs`*- Allows principals to start queries and retrieve query results from CloudWatch Logs for troubleshooting and monitoring.
102
+
* *`cloudwatch`*- Allows principals to retrieve metric data for monitoring cluster and workload performance.
103
+
* *`eks-mcp`*- Allows principals to invoke MCP operations and call read-only tools within the Amazon EKS MCP Server.
104
104
105
105
To view the permissions for this policy, see link:aws-managed-policy/latest/reference/AmazonEKSMCPReadOnlyAccess.html[AmazonEKSMCPReadOnlyAccess,type="documentation"] in the {aws} Managed Policy Reference.
0 commit comments