Creating the LHO IAM Role
Below you will find the steps you need to take in order to create the AWS IAM Role needed by the LHO application. LHO needs this IAM role with these permissions set so it can access the Amazon Secret, Amazon DynamoDB, Amazon SQS and also gather AWS cost data on the resources being monitored.
Open your AWS Web Console and Log in.
Go to IAM - Roles.
Click on Create role.
Select AWS Service as the Entity Type and EC2 as the Use Case and click Next.
On the Permissions page, click on Create policy.
Select the JSON tab and paste the Single AWS Account access policies for LHO | Final template for IAM Role for Lakehouse Monitor App EC2 VM template, replacing the placeholders for account ids, bucket names and paths for Billable Usages Log Delivery (please fill in the gaps as per the required information (e.g AWS Account ID)).
On the Review page, give your role a name and click Create Policy, and finish creating the IAM Role by giving the role a name and clicking Create role.
Have questions or need help getting started? Please Contact Us for further discussion. We are here to help you make the most out of your Lakehouse Optimizer experience!