PlerionAccess
tag with the value Denied
.
PlerionAccess
with the value Denied
to the Key.
PlerionAccess
into the Tag Key
field and Denied
into the Tag Value
field.PlerionAccess
tag with the value Granted
.
PlerionAccess
with the value Granted
to the Key.
PlerionAccess
into the Tag Key
field and Granted
into the Tag Value
field.arn:aws:iam::<AWS account ID>:root
, you need to follow additional steps alongside the previous instructions to grant access to the Plerion Appliance Role.
PlerionApplianceRole: True
. The PlerionApplianceRole is used by the Plerion Appliance to perform decryption operations.RolePurpose: PlerionAccess
. The PlerionAccessRole is used by the Plerion control plane to verify if the appliance has proper access to the key and to retrieve key metadata.<AWS_INTEGRATION_ACCOUNT>
with the AWS account ID of the account where the Plerion integration is configured.PlerionApplianceRole: True
. The PlerionApplianceRole is used by the Plerion Appliance to perform decryption operations.RolePurpose: PlerionAccess
. The PlerionAccessRole is used by the Plerion control plane to verify if the appliance has proper access to the key and to retrieve key metadata.arn:aws:iam::<AWS account ID>:root
. To resolve this, refer to the guide Granting access to KMS keys that don’t delegate to IAM account for granting access to the PlerionAccessRole.