ministryofjustice / cloud-platform

Documentation on the MoJ cloud platform
MIT License
87 stars 45 forks source link

Give users read only permission to Athena #5891

Closed timckt closed 3 weeks ago

timckt commented 3 months ago

Background

Users have started using Athena on the CloudPlatform in development, they can invoke the Athena API using only a IAM role, but being able to see Athena details in the console would help with development.

Proposed user journey

Approach

Update https://github.com/ministryofjustice/cloud-platform-terraform-aws-sso to include a new file for Athena. Viewing custom models could should be restricted with tags as per other resources.

Which part of the user docs does this impact

Communicate changes

Questions / Assumptions

Definition of done

Reference

How to write good user stories

sj-williams commented 3 weeks ago

Contacted Athena-using team, there is no need for AWS console access for the service at this time.