cockroachdb / cockroachdb/cockroach

cloud/s3: reproduce assume role expiration times

Open
#158,213 3 comments 0 reactions 0 assignees View on GitHub
A-disaster-recovery C-enhancement P-2 T-disaster-recovery
Dominant language
Go
Stars
32.5k
Forks
4.1k
PR merge metrics
PR metrics pending

Description

According to [s3 docs](https://docs.aws.amazon.com/singlesignon/latest/userguide/howtosessionduration.html), a user can only assume a role for 1 hour by default and up to 12 hours. So if you're job takes longer than 1 hour, then what? I created this issue to reproduce this behavior and then document it. I don't think there's any source code we can change.

Jira issue: CRDB-57165

Contributor guide

Open the contributing guide

Research direction

No repository files or tests are named. Start with the linked AWS session-duration documentation and reproduce the stated S3 assume-role expiration behavior for jobs lasting beyond one hour. Done means the behavior and its practical limits are documented, including the relevant session-duration details.

Written by the indexing model from the issue text.

Assessment

Tech stack
aws
Domain
cloud, documentation
Issue type
Documentation
Difficulty
3/5
Estimated time
1-2 days
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.