AWS IAM Key Rotation Fails to Propagate to CVO Systems
- Views:
- 22
- Visibility:
- Public
- Votes:
- 0
- Category:
- cloud-volumes-ontap-cvo
- Specialty:
- amazon_web_service
- Last Updated:
Applies to
- NetApp Cloud Volumes ONTAP (CVO) in AWS
- NetApp Console
Issue
After rotating AWS IAM access keys and updating them in the NetApp console, the new credentials were not propagated to underlying Cloud Volumes ONTAP (CVO) systems.
Observed Error Messages:
- “
Could not set the AWS credentials. Verify that the credentials are correct and then try again.” - “
The security token included in the request is invalid. (Service: AmazonIdentityManagement; StatusCode: 403; ErrorCode: InvalidClientTokenId)” - Mediator status degraded or down, seen in Audit logs:
DescribeMediatorStatus failed PlainText { "_failure": "Premature connection close (the server doesn't appear to support request pipelining)" } - EMS log:
Calculated DEGRADED status with reason: Failed to establish HTTP connection to the mediator
