> ## Documentation Index
> Fetch the complete documentation index at: https://docs.plerion.com/llms.txt
> Use this file to discover all available pages before exploring further.

# AWS troubleshooting

> Troubleshoot common errors in workload security (CWPP) scan and appliance lifecycle in Plerion.

## Integration errors

The following errors may occur when CWPP is configured for AWS.

***

### AssumeRoleError

**User action required:** Yes

**Cause:**\
This error occurs when the permissions or IAM policies created during AWS CWPP onboarding are missing, invalid, or no longer in effect.

**Solution:**\
Update the affected AWS Account integration(s) by following the appropriate guide:

* [Steps for updating a single AWS account](/guides/integrations/aws/aws-account/updating-aws-account#steps-to-update-a-single-aws-account)
* [Steps for updating multiple AWS accounts](/guides/integrations/aws/aws-account/updating-aws-account#steps-for-updating-multiple-aws-accounts)

***

### ServiceAccountDisabled

**User action required:** Yes

**Cause:**\
This error occurs when a CWPP scan runs against a target account whose associated service account is disabled.

**Solution:**\
Re-enable the service account from the **Service Account Integration** page in the Plerion platform.

***

### NoRegionsEnabled

**User action required:** Yes

**Cause:**\
This error occurs when a CWPP scan is executed under one of the following conditions:

* **In-account integration:** No AWS regions were enabled or configured.
* **Target account integration:** No AWS regions were enabled or configured for the associated service account.

**Solution:**

* For **in-account integrations**, enable at least one AWS region from the [AWS integrations setting page](https://app.plerion.com/settings/integrations/AWSAccount/integration).
* For **service account integrations**, enable at least one region from the [AWS service account settings page](https://app.plerion.com/settings/integrations/service-accounts).
