From the course: Complete Guide to AWS Security and Compliance Management

Unlock the full course today

Join today to access over 24,900 courses taught by industry experts.

Challenge: IAM roles

Challenge: IAM roles

(upbeat music) - [Instructor] We now have a Linux server with the CloudWatch agent installed. However, the agent can't communicate with CloudWatch. With your understanding of identity and access management roles, it's time for another IAM challenge. The first step in this role challenge is to create a new role called Custom EC2 CloudWatch. The intent of this role is to allow EC2 to send metrics to CloudWatch. When creating this role, we'll need to attach the CloudWatch agent server policy, as well as the Amazon SSM Managed instance core policy. Finally, we need to attach the new role to an EC2 server.

Contents