Configuring an AWS Account

Users who run MapR cloud formation templates must have certain minimum permissions. Contact your AWS administrator to ensure that the following AWS Policy is attached to your user account:
{
    "Version": "2012-10-17",
    "Statement": [
        {
            "Effect": "Allow",
            "Action": [
                "autoscaling:*",
                "cloudformation:*",
                "ec2:*"
            ],
            "Resource": "*"
        },
        {
            "Effect": "Allow",
            "Action": "iam:PassRole",
            "Resource": "arn:aws:iam::*:role/*"
        },
        {
            "Effect": "Allow",
            "Action": "s3:*",
            "Resource": "arn:aws:s3:::*"
        }
    ]
}
To create a more secure user, you can restrict the user to a specific role using iam:PassRole when you create the role. For example, if your role name is maprinstaller, the resource entry for iam role would be:
“Resource”: “arn:aws:iam::*:role/maprinstaller”

For more information about the role used for the MapR Installer, see Creating a Role for the MapR Installer.