Route53 Provider Question IAM ROLE Support

7 views
Skip to first unread message

Kevin Neufeld

unread,
Oct 30, 2025, 8:44:22 PM (12 days ago) Oct 30
to DNSControl-discuss
I did not see it in the documentation on how to configure credentials to use AWS_ROLE_ARN, when:
  • running locally USE current AWS_PROFILE as the credential source
  • WHEN CICD USE metadata endpoint. 
I tried adding `RoleArn` in the credential file as well as the environment variable AWS_ASSUME_ROLE but both failed to automatically assume the role in target account and try to execute on the current profile.

Ideally, would be nice to see RoleArn natively supported in creds.json and not have create custom aws config profiles toggling source_profile (local) and  credential_source (CICD).

I am wondering if this is a bug or would it need to be submitted as feature?  



Tom Limoncelli

unread,
Oct 31, 2025, 11:12:46 AM (12 days ago) Oct 31
to Kevin Neufeld, DNSControl-discuss
Hi hi!

I don't know much about AWS.  Submit a new issue (https://github.com/StackExchange/dnscontrol/issues) so we can discuss it there.

Thanks!
Tom
 

--
You received this message because you are subscribed to the Google Groups "DNSControl-discuss" group.
To unsubscribe from this group and stop receiving emails from it, send an email to dnscontrol-disc...@googlegroups.com.
To view this discussion visit https://groups.google.com/d/msgid/dnscontrol-discuss/e880d2f1-e517-40ed-9cdd-9a7d4189b415n%40googlegroups.com.
Reply all
Reply to author
Forward
0 new messages