awslabs / awslabs/eks-perf-tests

Move to managed IAM policy for awslb service account for testbed addon.

Open
#6 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Shell
Stars
72
Forks
50
PR merge metrics
No merged PRs in 30d

Description

Testbed:

Either moved to a managed policy like `AWSLoadBalancerControllerIAMPolicy` when it's available in IAM (or) scope down the policies of AWS LB IRSA role using this - https://raw.githubusercontent.com/kubernetes-sigs/aws-load-balancer-controller/v2.2.0/docs/install/iam_policy.json

Contributor guide

Open the contributing guide

Research direction

Start by locating the testbed addon and the awslb service account configuration. Compare its AWS LB IRSA permissions with the referenced AWS Load Balancer Controller IAM policy and determine whether the managed policy is available in IAM. Done means the addon uses the managed policy, or the IRSA role is scoped to the required permissions.

Written by the indexing model from the issue text.

Assessment

Tech stack
aws, kubernetes
Domain
cloud, infrastructure, security
Issue type
Refactor
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.