createPolicy正在抛出"无权执行:iam:资源上的CreatePolicy"

时间:2017-01-10 14:19:14

标签: amazon-web-services amazon-ec2 aws-sdk

我在java中有以下代码

String policy_doc = "{
    "Version": "2012-10-17",
    "Statement": [
        {
            "Effect": "Allow",
            "Action": [
                "ec2:StartInstances",
                "ec2:StopInstances"
            ],
            "Resource": [
                "*"
            ]
            }
        ]
    }";

policyArn = iam.createPolicy(
        new CreatePolicyRequest()
                .withPolicyName("do_not_delete_scheduler_policy")
                .withPolicyDocument(policy_doc))
                .getPolicy()
                .getArn()
                ;
  

arn:aws:iam :: 740103494626:用户/ viswa无权执行:iam:资源上的CreatePolicy:policy do_not_delete_scheduler_policy(服务:AmazonIdentityManagement;状态代码:403;错误代码:AccessDenied;请求ID:40f4c002-d73c -11e6-86c8-6b6a4f570c83)

这可以通过使用iam:*用户权限来解决。没有这个可能吗。

0 个答案:

没有答案