Skip to content

Conversation

@Tian-2017
Copy link
Contributor

@Tian-2017 Tian-2017 commented Jan 16, 2026

botocore.errorfactory.AccessDeniedException: An error occurred (AccessDeniedException) when calling the RunTask operation: User: arn:aws:iam::120038763019:user/data-and-insight-airflow-user is not authorized to perform: iam:PassRole on resource: arn:aws:iam::120038763019:role/dataplatform-stg-cross-department-glue-metadata-role because no identity-based policy allows the iam:PassRole action

Fix the bug, by granting the execution user permission to pass the cross-department glue metadata role to the ECS departmental (data-and-insight) container.

@Tian-2017 Tian-2017 requested review from a team as code owners January 16, 2026 11:15
@sonarqubecloud
Copy link

@Tian-2017 Tian-2017 merged commit d7a1472 into main Jan 16, 2026
16 checks passed
@Tian-2017 Tian-2017 deleted the DL-165-allow-deparmental-user-to-pass-metadata-role-to-ecs branch January 16, 2026 11:30
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants