-
Feature
-
Resolution: Unresolved
-
Normal
-
None
-
None
-
None
Feature Overview (aka. Goal Summary)
Customers have strong demand and valid use-case to have entirely customised role names for ROSA cluster operator-role names.
Instead of only having a prefix, we should offer a custom suffix, or more effectively a fully freeform role-name for operator roles.
This scenario would be common with customers that would not use a prefix in the role naming, or customers that use infra-as-code tools such as Terraform or the AWS CLI to directly create AWS IAM resources.
Requirements (aka. Acceptance Criteria):
- allow customers to provide ARNs of operator roles that are free-form named (not named as we expect them already)
- all ROSA clients and APIs are functional with this capability
- documentation is provided for achieving this outcome
Questions to Answer (Optional):
Would this break our current ROSA UI without adapting it?
Documentation Considerations
Documentation will need to be updated to indicate that the operator role names can be free-form and how that could be achieved.
- clones
-
XCMSTRAT-301 Classic Policies - passrole restriction
- New
- is blocked by
-
XCMSTRAT-303 Classic Policies - operator roles use AWS managed policies
- New
- is cloned by
-
XCMSTRAT-303 Classic Policies - operator roles use AWS managed policies
- New