Skip to content
This repository has been archived by the owner on Jan 18, 2023. It is now read-only.

Allow the use of encrypted data bags for looking up AWS credentials #18

Open
rayrod2030 opened this issue Oct 16, 2013 · 2 comments
Open

Comments

@rayrod2030
Copy link
Contributor

It would be great to have the option of using an encrypted data bag to store AWS credentials used for accessing the AWS billing and ice work buckets via S3.

@dhawal55
Copy link

dhawal55 commented Mar 2, 2015

Even better would be to leverage IAM role for AWS API calls. I'm not sure if this is supported currently.

@et304383
Copy link

This could be solved by using a wrapper cookbook that pulls your credentials out of your data bag and sets the appropriate ice attribute files.

That being said, you should be using IAM roles unless you're forced to run this on premise rather than in AWS. By simply leaving the attributes for the access credentials blank you should get this behaviour.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

No branches or pull requests

3 participants