Preparing the System / Creating IAM Policies |
AWS Identity & Access Management (IAM) manages credentials for the Cluster Manager and its nodes by assigning IAM roles to them when they are launched. Attaching policies to these roles grant the associated instances permissions such as starting, stopping, and terminating instances in EC2, associating IAM roles with a new instance, or updating records in the Route 53 service.
The ELB IAM policy allows the Cluster Manager to assign it's instance to an existing Elastic Load Balancer. The Cluster Manager only requires this policy if you are using an internal ELB for the cluster to connect back to the manager. The following instructions describe how to create the ELB IAM policy: