cancel
Showing results for 
Search instead for 
Did you mean: 

Not able to create a Cloud Appliance Library Account to access AWS

joachim_eilers
Explorer
0 Kudos

I have set up an AWS account with the following credentials:

- Configured Payment method using consolidated billing. Activated Consolidated billing

- Created a group

- Created 2 IAM users and assigned them to the group

- Created Access Keys for both users in the group

- Applied the following policies to the group:

-> AmazonEC2FullAccess

-> AmazonEC2ReadOlnyAccess

-> AmazonVPCFullAccess

-> AWSAccountUsageReportAccess

- Deleted my root access key

- Activated MFA

- Applied an IAM password policy

When trying to create an account i CAL I still get the error:

"Invalid account credentials or no permissions for the Elastic Compute Cloud (EC2) Web service of the cloud provider."

What am I doing wrong?

Best regards

Espen Joachim Eilers

IBM Norway

+4798224976

Accepted Solutions (1)

Accepted Solutions (1)

stanimir_eisner
Employee
Employee
0 Kudos

Hello,

You should select ReadOnlyAccess instead of AmazonEC2ReadOlnyAccess. For more information see https://archive.sap.com/documents/docs/DOC-54564

Best regards,

Stanimir

Answers (2)

Answers (2)

rajiv_srivastava
Explorer
0 Kudos

Thanks I found this helpful ...counter-intuitive Read Only 🙂

joachim_eilers
Explorer
0 Kudos

Yes, I discovered that. It was not the intuitive choice, since most of the other policies uses the AmazonEC2... "prefix".

Thank you for answering.

Regards

Joachim Eilers