Class: Aws::ConfigService::Types::InsufficientPermissionsException

Inherits:
EmptyStructure
  • Object
show all
Defined in:
lib/aws-sdk-configservice/types.rb

Overview

Indicates one of the following errors:

  • For [PutConfigRule], the rule cannot be created because the IAM role assigned to Config lacks permissions to perform the config:Put* action.

  • For [PutConfigRule], the Lambda function cannot be invoked. Check the function ARN, and check the function’s permissions.

  • For [PutOrganizationConfigRule], organization Config rule cannot be created because you do not have permissions to call IAM ‘GetRole` action or create a service-linked role.

  • For [PutConformancePack] and [PutOrganizationConformancePack], a conformance pack cannot be created because you do not have the following permissions:

    • You do not have permission to call IAM ‘GetRole` action or create a service-linked role.

    • You do not have permission to read Amazon S3 bucket or call SSM:GetDocument.

  • For [PutServiceLinkedConfigurationRecorder], a service-linked configuration recorder cannot be created because you do not have the following permissions: IAM ‘CreateServiceLinkedRole`.

[1]: docs.aws.amazon.com/config/latest/APIReference/API_PutConfigRule.html [2]: docs.aws.amazon.com/config/latest/APIReference/API_PutOrganizationConfigRule.html [3]: docs.aws.amazon.com/config/latest/APIReference/API_PutConformancePack.html [4]: docs.aws.amazon.com/config/latest/APIReference/API_PutOrganizationConformancePack.html [5]: docs.aws.amazon.com/config/latest/APIReference/API_PutServiceLinkedConfigurationRecorder.html