awslabs / awslabs/agentcore-samples

06-workshops - [Bug] 07-Tool Access with Policy: Gateway role missing bedrock-agentcore:GetPolicyEngine permission

Open
#2,029 0 comments 0 reactions 1 assignee Claimed by @akshseh View on GitHub
06-workshops bug
Dominant language
Python
Stars
3.4k
Forks
1.3k
Avg merge
1d 22h
Merged PRs (30d)
30

Description

**In which component is this bug present?**

- [ ] 01-AgentCore-runtime
- [ ] 02-AgentCore-gateway
- [ ] 03-AgentCore-identity
- [ ] 04-AgentCore-memory
- [ ] 05-AgentCore-tools
- [ ] 06-AgentCore-observability
- [x] 07-AgentCore-E2E

**Bug Description**

Attaching a policy engine requires the `bedrock-agentcore:GetPolicyEngine` permission on the gateway role. The toolkit's `fix_iam_permissions` doesn't add it.

**Suggested Fix**
The deploy script or toolkit should add `bedrock-agentcore:*` to the gateway role.

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.