IAM role deployments in Reachability Analyzer
When you enable trusted access, the following roles are deployed in your organization:
-
AWSServiceRoleForReachabilityAnalyzer – The service-linked role for Reachability Analyzer.
-
IAMRoleForReachabilityAnalyzerCrossAccountResourceAccess – The role for cross-account resource access for Reachability Analyzer.
-
AWSServiceRoleForCloudFormationStackSetsOrgAdmin – The service-linked role for AWS CloudFormation StackSets for the management account.
-
AWSServiceRoleForCloudFormationStackSetsOrgMember – The service-linked role for AWS CloudFormation StackSets for the member accounts.
The deployments can take several minutes to complete, depending on the number of member accounts in your organization. You can view the status of the role deployments as follows.
To view IAM role deployments
-
Sign in to the management account.
-
Open the Network Manager console at https://console.aws.amazon.com/networkmanager/home
. -
From the navigation pane, choose Reachability Analyzer, Settings.
-
Check IAM role deployments status.