AWS Default Service Access
Description
This plugin handles how IAM can access AWS service endpoints. It automatically selects the AWS region and thus the default endpoint for each service in that region, e.g. AWS Key Management Service (KMS).
Regions enable you to access AWS services that physically reside in a specific geographic area.
Default access selection is useful when IAM is deployed in an AWS cluster where the region is already provided in one of the formats described below.
IAM attempts to identify the AWS region in the following order:
- Java system property aws.region
- Environment variable AWS_REGION
- Config files at location {user.home}/.aws/credentials and {user.home}/.aws/config
- Region delivered through the Amazon EC2 metadata service
IAM requires a region to connect to the AWS service, otherwise connection fails with an error.
Multiple AWS regions for the same service are currently not supported.
May be used by
Properties
YAML Template (with default values)
type: AwsDefaultServiceAccess
id: AwsDefaultServiceAccess-xxxxxx
displayName:
comment:
properties: