Which solution will meet these requirements?

1 Comment

  1. Austin
    Author

    I gauge that the answer is:
    In the application account, create an IAM role that is named DBA-Secret. Grant the role the required permissions to access the secrets. In the DBA account, create an IAM role that is named DBA-Admin. Grant the DBA-Admin role the required permissions to assume the DBA-Secret role in the application account. Attach the DBA-Admin role to the EC2 instance for access to the cross-account secrets.

Leave a Reply

Your email address will not be published. Required fields are marked *

fourteen − 12 =