on ‎2025 Jan 29 5:12 PM
Hello Community
We try to deploy SAP System into our own AWS Account, but facing severals unknow issues.
Whole configuration regards to user management "user" - standard policy and customer inline policy - are implemented as described from AWS https://caldocs.hana.ondemand.com/caldocs/help/AWS_FAQs.pdf point of view. User has a valid AK/SK and is just configured for AWS CLI / API needs.
During few more validaitons, we getting the following issue from SimulatePrincipalPolicy point of view.
After a deep dive and execution command via console there is a result for each KMS part "implicitDeny" and it feels like workflow is crashing and there is no possiblity to deploy SAP System from SAP CAL point of view.
Any ideas how to fix this issue in general, each new deployment is mentioned issue with AWS KMS and failed always?
Who is taking care of the overall deployment workflow/implementation SAP or AWS?
If something missing for validation or further deep dive please let me know.
Thanks in advance and your support.
Regards
Ringo
Request clarification before answering.
Hi RingoSommer ,
Please try again to create a new appliance.
In case the problem is still reproducible, please check your global account policies, if there are any that prohibit the activation of policies required by us.
Best regards,
Tsvetinka
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
According to the firs post, you have a policy that prohibits kms:Decrypt.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi RingoSommer,
There is not workaround in your case.
You must meet all listed here requirements to be able to create an appliance. According to provided screenshots you have not done it yet.
Best regards,
Tsvetinka
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
| User | Count |
|---|---|
| 7 | |
| 6 | |
| 6 | |
| 5 | |
| 4 | |
| 3 | |
| 3 | |
| 3 | |
| 3 | |
| 3 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.