Skip to content

Commit e93a064

Browse files
fix: aws-secrets-store-csi-driver-provider add-on docs
cr: https://code.amazon.com/reviews/CR-235766679
1 parent b465681 commit e93a064

File tree

1 file changed

+20
-20
lines changed

1 file changed

+20
-20
lines changed

latest/ug/workloads/workloads-add-ons-available-eks.adoc

Lines changed: 20 additions & 20 deletions
Original file line numberDiff line numberDiff line change
@@ -666,26 +666,6 @@ The SR-IOV Network Metrics Exporter Amazon EKS add-on collects and exposes metri
666666

667667
NOTE: This add-on requires nodes with SR-IOV-capable network interfaces.
668668

669-
[#add-ons-aws-secrets-store-csi-driver-provider]
670-
=== {aws} Secrets Store CSI Driver provider
671-
672-
The {aws} provider for the Secrets Store CSI Driver is an add-on that enables retrieving secrets from {aws} Secrets Manager and parameters from {aws} Systems Manager Parameter Store and mounting them as files in Kubernetes pods.
673-
674-
[#add-ons-ascp-iam-permissions]
675-
=== Required IAM permissions
676-
677-
The add-on does not require IAM permissions. However, application pods will require IAM permissions to fetch secrets from {aws} Secrets Manager and parameters from {aws} Systems Manager Parameter Store. After installing the add-on, access must be configured via IAM Roles for Service Accounts (IRSA) or EKS Pod Identity. To use IRSA, please refer to the Secrets Manager https://docs.aws.amazon.com/secretsmanager/latest/userguide/integrating_ascp_irsa.html[IRSA setup documentation]. To use EKS Pod Identity, please refer to the Secrets Manager https://docs.aws.amazon.com/secretsmanager/latest/userguide/ascp-pod-identity-integration.html[Pod Identity setup documentation].
678-
679-
{aws} suggests the `AWSSecretsManagerClientReadOnlyAccess` managed policy.
680-
681-
For more information about the required permissions, see `AWSSecretsManagerClientReadOnlyAccess` in the {aws} Managed Policy Reference.
682-
683-
=== Additional information
684-
685-
For more information, please see the secrets-store-csi-driver-provider-aws https://github.com/aws/secrets-store-csi-driver-provider-aws[GitHub repository].
686-
687-
To learn more about the add-on, please refer to the https://docs.aws.amazon.com/secretsmanager/latest/userguide/ascp-eks-installation.html[{aws} Secrets Manager documentation for the add-on].
688-
689669
[%header,cols="2"]
690670
|===
691671
|Property
@@ -710,3 +690,23 @@ To learn more about the add-on, please refer to the https://docs.aws.amazon.com/
710690
|None
711691

712692
|===
693+
694+
[#add-ons-aws-secrets-store-csi-driver-provider]
695+
=== {aws} Secrets Store CSI Driver provider
696+
697+
The {aws} provider for the Secrets Store CSI Driver is an add-on that enables retrieving secrets from {aws} Secrets Manager and parameters from {aws} Systems Manager Parameter Store and mounting them as files in Kubernetes pods.
698+
699+
[#add-ons-ascp-iam-permissions]
700+
=== Required IAM permissions
701+
702+
The add-on does not require IAM permissions. However, application pods will require IAM permissions to fetch secrets from {aws} Secrets Manager and parameters from {aws} Systems Manager Parameter Store. After installing the add-on, access must be configured via IAM Roles for Service Accounts (IRSA) or EKS Pod Identity. To use IRSA, please refer to the Secrets Manager https://docs.aws.amazon.com/secretsmanager/latest/userguide/integrating_ascp_irsa.html[IRSA setup documentation]. To use EKS Pod Identity, please refer to the Secrets Manager https://docs.aws.amazon.com/secretsmanager/latest/userguide/ascp-pod-identity-integration.html[Pod Identity setup documentation].
703+
704+
{aws} suggests the `AWSSecretsManagerClientReadOnlyAccess` managed policy.
705+
706+
For more information about the required permissions, see `AWSSecretsManagerClientReadOnlyAccess` in the {aws} Managed Policy Reference.
707+
708+
=== Additional information
709+
710+
For more information, please see the secrets-store-csi-driver-provider-aws https://github.com/aws/secrets-store-csi-driver-provider-aws[GitHub repository].
711+
712+
To learn more about the add-on, please refer to the https://docs.aws.amazon.com/secretsmanager/latest/userguide/ascp-eks-installation.html[{aws} Secrets Manager documentation for the add-on].

0 commit comments

Comments
 (0)