Privileges Required to Use AWS Batch Connector
To use the AWS Batch Connector, you need one of the following:
scheduler-administrator
orredwood-administrator
role.scheduler-user
orredwood-login
role in combination with the following system-wide, Partition-wide or object-level privileges.
Built-in Roles
- The
scheduler-administrator
orredwood-administrator
built-in role provides full control over the AWS Batch Connector. - The
scheduler-viewer
built-in role provides read-only access to the AWS Batch Connector.
Creating, Modifying, and Deleting AWS Connections
You need all of the following privilege ranks to be able to create, modify, and delete AWS Connections.
- View or any other rank - on the GLOBAL.Redwood.REDWOOD.AWS.REDWOOD.Utilities Application.
- View or any other rank - on the existing Job Server and Queue for the Connection, if applicable.
- Create - on Job Server and Queue, if these need to be created.
Using AWS Batch
- View or any other rank - on the GLOBAL.Redwood.REDWOOD.AWS.REDWOOD.Batch Application.
- View or any other rank - on the REDWOOD.Redwood_AWS_Batch_JobDefinitionConstraint constraint.
- View or any other rank - on the REDWOOD.Redwood_AWS_Batch_JobQueueConstraint constraint.
- View - on EXTConnection and AWSConnection.
- View - on the component's Job Server.
- JobAdministrator - on the component's Queue.
- View - on REDWOOD.Redwood_AWS_Batch library.
- Run - on Job Definitions you wish to use.