],
"Effect": "Allow"
},
{
"Action": [
"kms...:CreateGrant",
"kms:DescribeKey"
],
"Resource": "*",..."iam:DetachRolePolicy",
"iam:DeleteRolePolicy",
"iam:GetRolePolicy",..."iam:DeleteOpenIDConnectProvider",
"iam:ListAttachedRolePolicies",
"iam...EKSAdminGroup
为用户授权
执行以下命令,创建用户并添加到 EKSAdminGroup 组:
$ aws iam create-user --user-name someadmin
$ aws