Skip to content

Conversation

@Tian-2017
Copy link
Contributor

@Tian-2017 Tian-2017 commented Dec 24, 2025

ERROR:main:Error generating Webmaps YAML: An error occurred (AccessDenied) when calling the PutObject operation: User: arn:aws:sts::120038763019:assumed-role/dataplatform-stg-data-and-insight-ecs-task-role/4c958d33f1234cf2a9ed69bce1f319f8 is not authorized to perform: s3:PutObject on resource: "arn:aws:s3:::dataplatform-stg-datahub-config/metadata/datasets/external_map_index.yaml" because no identity-based policy allows the s3:PutObject action

This former PR (#2614) doesn’t grant the dataplatform-stg-data-and-insight-ecs-task-role permission to write the formatted map YAML to the DataHub config bucket — the issue still persists.

The permission for the departmental ECS role was granted via this PR.

@sonarqubecloud
Copy link

@Tian-2017 Tian-2017 changed the title [Leave for the New Year] DL-167 – Data and Insight ECS role to write to DataHub config bucket DL-167 – Data and Insight ECS role to write to DataHub config bucket Jan 5, 2026
@Tian-2017 Tian-2017 marked this pull request as ready for review January 5, 2026 10:56
@Tian-2017 Tian-2017 requested review from a team as code owners January 5, 2026 10:56
@Tian-2017 Tian-2017 changed the title DL-167 – Data and Insight ECS role to write to DataHub config bucket DL-167 – Data and Insight ECS task role to write to DataHub config bucket Jan 5, 2026
@Tian-2017 Tian-2017 merged commit 371a4b9 into main Jan 5, 2026
8 checks passed
@Tian-2017 Tian-2017 deleted the DL-167-grant-data-and-insight-ecs-role-to-write-to-datahub-config-bucket branch January 5, 2026 11:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants