CMDB and AWS Integration Errors

yogao
Tera Contributor

Our team is seeing errors with the IAM role we use for CMDB Discovery in our AWS Organization. We are seeing the error on an extremely small subset of our child accounts in our AWS Organization. It appears to be trying to sts:AssumeRole to a role that has elevated privileges and is not part of the trust relationship of the CMDB discovery role . I would expect a couple of things: 1) It would not be trying to do this at all. 2) That if it was going to try this action it would try it in all accounts not a few of them. 

Any understanding or articles you could point me at to help troubleshoot would be great.

yogao

1 REPLY 1

Mark Manders
Giga Patron

Since we don't have access to your setup and don't know how everything is configured (in ServiceNow or in AWS), it's a guessing game. But check the below links to understand why it may be doing this:

https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB0852923

https://www.servicenow.com/docs/r/zurich/it-operations-management/itom-cloud-accelerate/create-assum...
https://noderegister.service-now.com/kb?id=kb_article_view&sysparm_article=KB0831884

 


Please mark any helpful or correct solutions as such. That helps others find their solutions.
Mark