Hi, I'm Ask INFA!
What would you like to know?
ASK INFAPreview
Please to access Ask INFA.

Enable Customer Managed Keys for your Organization on Amazon Web Services

Enable Customer Managed Keys for your Organization on Amazon Web Services

Step 3. Create an IAM role to access the key

Step 3. Create an IAM role to access the key

In the AWS Management Console, create an IAM role to allow
Informatica Intelligent Cloud Services
to access your CMK. Note the role ARN because you'll need it when you enable customer managed keys in
Informatica Intelligent Cloud Services
.
To complete this step, you'll need your
Informatica Intelligent Cloud Services
organization ID. You can find your organization ID in the upper right corner when you log in to any service in
Informatica Intelligent Cloud Services
:
  1. In the search bar, search for
    IAM
    .
  2. Under
    Access Management
    , navigate to
    Roles
    and click
    Create role
    .
  3. Set the trusted entity type to
    AWS account
    .
  4. In the
    Account ID
    field, enter Informatica's AWS account ID:
    130917795281
  5. Enable
    Require external ID
    , and enter your
    Informatica Intelligent Cloud Services
    organization ID as the external ID:
  6. Click
    Next
    .
  7. Search for the policy you created in Step 2. Create an IAM policy for the key, for example,
    Informatica-KMS-Access
    , and select it.
  8. Click
    Next
    .
  9. Enter a name for the role.
    The role name must use the following prefix:
    informatica-kms-cmk-access-role-
    For example, you might name the role,
    informatica-kms-cmk-access-role-prod
    .
  10. Review the role permissions and click
    Create role
    .
  11. On the
    Roles
    page, select the role you created and note the role ARN.

0 COMMENTS

We’d like to hear from you!