. AmazonS3FullAccess IAM, RDS... .
, , RDS Clusters. Aurora " IAM". , IAM (, ).
, , .
, ( ) 5 /:
1) S3,
{
"Version": "2012-10-17",
"Id": "Policy1453918146601",
"Statement": [
{
"Sid": "Stmt1453917898368",
"Effect": "Allow",
"Principal": {
"AWS": "arn:aws:iam::<account id>:<user/group/role>/<IAM User/Group/Role>"
},
"Action": [
"s3:DeleteObject",
"s3:GetObject",
"s3:PutObject"
],
"Resource": "arn:aws:s3:::<bucket name>/*"
}
]
}
"" , IAM, , RDS .
2) IAM:
{
"Version": "2012-10-17",
"Statement": [
{
"Sid": "Stmt1486490368000",
"Effect": "Allow",
"Action": [
"s3:GetObject",
"s3:GetObjectVersion",
"s3:ListBucket"
],
"Resource": [
"arn:aws:s3:::<bucket name>/*"
]
}
]
}
.
3) IAM:
IAM . , , , , , .
4) , / aws_default_s3_role ARN # 3 .
5) Aurora, , , " IAM" IAM DB
, .
, !