NetApp Console S3 bucket access fails with AccessDenied error on List All MyBuckets
Applies to
- NetApp NetApp Console Console (formerly Cloud Manager)
- Amazon Web Services (AWS) S3
- AWS Identity and Access Management (IAM) roles
Issue
Attempting to view AWS S3 buckets from NetApp Console fails with an access denied error.
AccessDenied: User: arn:aws:sts::<AWS-accountname>:assumed-role/<rolename>/AWSRole is not authorized to perform: s3:ListAllMyBuckets because no identity-based policy allows the s3:ListAllMyBuckets action
Cause
The IAM role associated with the NetApp Console does not have the required s3:ListAllMyBuckets permission in its identity-based policy.
Solution
Choose one of the following Solutions:
- Solution 1: Add permission to existing role
- Log in to the AWS Management Console.
- Navigate to IAM > Roles.
- Locate and select the role used by NetApp Console.
- Edit the attached policy to include the s3:ListAllMyBuckets action.
- Save the policy changes.
- Retry the S3 bucket listing from NetApp Console.
- Solution 2: Create new credentials with proper permissions
Partner Notes
partnerNotes_text
Additional Information
Internal Notes
internalNotes_text
