[ ] MinIO: nix access-key and secret-access-key which are deprecated in favor of root user/passwd (fine for testing)
[ ] LocalStack and MinIO are currently run by the dataverse service account, with cleanliness in mind. This was a bad idea. Give them each service accounts, with their own S3 config, and launch Docker containers from each.
[ ] Place .aws/credentials in LocalStack and MinIO service accounts but not within dataverse service account
dataverse
service account, with cleanliness in mind. This was a bad idea. Give them each service accounts, with their own S3 config, and launch Docker containers from each..aws/credentials
in LocalStack and MinIO service accounts but not withindataverse
service account