Privileges Required to Use AWS S3 Connector

To use the AWS S3 Connector, you need one of the following:

  • scheduler-administrator or redwood-administrator role.
  • scheduler-user or redwood-login role in combination with the following system-wide, Partition-wide or object-level privileges.

Built-in Roles

  • The scheduler-administrator or redwood-administrator built-in role provides full control over the AWS S3 Connector.
  • The scheduler-viewer built-in role provides read-only access to the AWS S3 Connector.

Creating, Modifying, and Deleting AWS Connections

You need all of the following privilege ranks to be able to create, modify, and delete AWS S3 Connections.

  • View or any other rank - on the GLOBAL.Redwood.REDWOOD.AWS.REDWOOD.Utilities Application.
  • View or any other rank - on the existing Process Server and Queue for the Connection, if applicable.
  • Create - on Process Server and Queue, if these need to be created.

Using AWS S3

  • View or any other rank - on the GLOBAL.Redwood.REDWOOD.AWS.REDWOOD.S3 Application.
  • View or any other rank - on the REDWOOD.Redwood_AWS_S3_EncryptionTypeConstraint constraint.
  • View or any other rank - on the REDWOOD.Redwood_AWS_S3_StorageClassConstraint constraint.
  • View - on EXTConnection and AWSConnection.
  • View - on the component's Process Server.
  • JobAdministrator - on the component's Queue.
  • View - on REDWOOD.Redwood_AWS_S3 library.
  • Submit - on Process Definitions you wish to use.

See Also