Deploying on AWS
This page describes how to deploy onto AWS.
1. Create a new AWS sub-account
2. Create an IAM user
{
"Version": "2012-10-17",
"Statement": [
{
"Sid": "VisualEditor0",
"Effect": "Allow",
"Action": [
"elasticloadbalancing:DescribeSSLPolicies",
"rds:*",
"s3:*",
"elasticloadbalancing:DescribeTags",
"elasticloadbalancing:DescribeLoadBalancerPolicyTypes",
"autoscaling:*",
"iam:*",
"elasticloadbalancing:DeleteLoadBalancer",
"elasticloadbalancing:DescribeLoadBalancerAttributes",
"elasticloadbalancing:DescribeLoadBalancers",
"elasticloadbalancing:DescribeTargetGroupAttributes",
"elasticloadbalancing:DescribeListeners",
"elasticloadbalancing:DescribeAccountLimits",
"elasticloadbalancing:DescribeTargetHealth",
"elasticloadbalancing:DescribeLoadBalancerPolicies",
"ec2:*",
"elasticloadbalancing:DescribeTargetGroups",
"elasticloadbalancing:DescribeListenerCertificates",
"eks:ListClusters",
"elasticloadbalancing:DescribeRules",
"elasticloadbalancing:DescribeInstanceHealth",
"elasticache:*",
"eks:CreateCluster"
],
"Resource": "*"
},
{
"Sid": "VisualEditor1",
"Effect": "Allow",
"Action": "eks:*",
"Resource": [
"arn:aws:eks:*:*:cluster/*",
"arn:aws:eks:*:*:nodegroup/*/*/*"
]
},
{
"Sid": "VisualEditor2",
"Effect": "Deny",
"Action": [
"rds:AuthorizeDBSecurityGroupIngress",
"ec2:ModifyVpcEndpointServicePermissions",
"ec2:DeleteNetworkInterfacePermission",
"ec2:ModifySnapshotAttribute",
"ec2:CreateNetworkInterfacePermission",
"ec2:ResetSnapshotAttribute"
],
"Resource": "*"
}
]
}3. Accept the vendor invitation
4. Set up DNS
5. Accessing the new service
Last updated