awslabs / awslabs/agentcore-samples
06-workshops - [Bug] 07-Tool Access with Policy: Gateway execution role missing Lambda permissions
- Dominant language
- Python
- Stars
- 3.4k
- Forks
- 1.3k
- Avg merge
- 1d 22h
- Merged PRs (30d)
- 30
Description
**In which component is this bug present?**
- [ ] 01-AgentCore-runtime
- [x] 02-AgentCore-gateway
- [ ] 03-AgentCore-identity
- [ ] 04-AgentCore-memory
- [ ] 05-AgentCore-tools
- [ ] 06-AgentCore-observability
- [ ] 07-AgentCore-E2E
**Bug Description**
The shared `AgentCoreGatewayExecutionRole` had an inline policy only allowing invocation of `AgentCoreLambdaTestFunction` from a prior exercise. When the Tool Access with Policy lab creates new Lambda functions, the gateway role lacks permissions to invoke them.
**Suggested Fix**
The deploy script should update the role's inline policy to include the new Lambda ARNs it creates.
Contributor guide
Assessment
This issue has not been assessed yet.