AWS Account permissions for container support

If you connected your AWS account to CloudZero prior to June 1, 2020 you may need to give us some additional permissions to pull in your container metric data.

Checking if your permissions are correct

In each account where Container Insights is enabled you will need to ensure that the CloudZero Role has the correct inline policies. You can see the latest required permissions by going to the manual account provision page in the CloudZero console and view the inline policies specified for AWS accounts.

Updating permissions

If you need to update the permissions you have two options.

The first option is to remove the Cloud Formation Stack in the AWS console and then re-launch it from the CloudZero console.

The second option (for those who manually provisioned their AWS account,) is to update the role yourself in the AWS console using the inline policies specified in the console.

If you have problems or questions with either of those, please reach out to us at [email protected].