Logo Questions Linux Laravel Mysql Ubuntu Git Menu
 

About the IAM role in cdk bootstrap

The following IAM roles were found in the bootstrap of cdk.

  • FilePublishingRole
  • ImagePublishingRole
  • LookupRole
  • DeploymentActionRole
  • CloudFormationExecutionRole

I understand the meaning of CloudFormationExecutionRole, but in what situations are the other IAM roles used? I would like to know if there is any documentation that clearly states this.

like image 812
5hintaro Avatar asked Dec 05 '25 02:12

5hintaro


1 Answers

The roles are defined here. Looking at the definitions you can see what they are used for:

  • FilePublishingRole - access to S3 with associated KMS
  • ImagePublishingRole - access to ECR
  • LookupRole - role to performe lookups with various fromLookup methods
  • DeploymentActionRole - access to CloudFormation, KMS and S3
like image 70
Marcin Avatar answered Dec 07 '25 16:12

Marcin