Hi folks, we managed to drop the ability to snapshot volumes for some reason under the fedora-copr account in EC2.
fedora-copr
We need someone who'd help us with recovery, or maybe someone who could promote us (me or @frostyx) to be able to fix the IAM policies (we can not even read them to understand the problem).
Current error under my own praiskup user, but simliar happnes for the fedora-copr bot account (it worked before):
praiskup
You are not authorized to perform this operation. User: arn:aws:sts::125523088429:assumed-role/aws-copr/praiskup is not authorized to perform: ec2:CreateSnapshot on resource: arn:aws:ec2:us-east-1::snapshot/* because no identity-based policy allows the ec2:CreateSnapshot action. Encoded authorization failure message: hzYwoPfFlVsxLhPMsO07uk_-shgol2E782pxCmxS93Dhzs1vxixQ9zCzf-zXIZipaCtw5LmZfW9wwDyE_OqnQrI1SSa2x_oGTWdCzMIDATaYe2PGvvXAxU1hvld63PeZ2HTgXtO7xCt4FDyMwOCxPVn_por6u8EZp0R35BWMAQhWsO3JxMFwFEs2h1C9elqWSkvxvn3JGEwTqwFDGjj8PWuc76e9Xl6AsMmHLdBEXwuZWFbbgOZtUc02v8z8xiWy5gBrbYnUQB4-dWiUE8wuI_i_vWTSVase3FXzidWykUX7OsDdjr2wvcqMyfaP1NF1vgm_v9Hd7kF6kreMMcKVu4SCVILPXFguQFf7qg1AINt-G4z-dFjUCAxMFjPi1Zyzkqhhsu-eDnPuvGsWoDDiSmyBng4--iA-48AGvzFkyxfuLOVb9-UnpeuG1w4qr0drJrpnV2hBBC_KU-oqNL8C00P_TgU_yClfCUagpT3OfyqvYPnCC-0pyPup7d250hZp1xqBLwHl5y6lcWIJCC5JzCCKJ-jcXdhoAUApQ3RbgR-gDcJOdIP9teXA895VJipTUMEFDzXemS5f
This is blocking our Fedora Copr Infra F39 => F41 migration.
@msuchy fixed it. We can close this.
Metadata Update from @zlopez: - Issue close_status updated to: Fixed - Issue status updated to: Closed (was: Open)