Setting up baseline AWS users and permissions - AWS Service Management Connector

Setting up baseline AWS users and permissions

This section provides instructions on how to set up the baseline AWS users and permissions for the AWS Service Management Connector for Jira Service Management.

Available template for baseline permissions

To use an AWS CloudFormation template to set up the AWS configurations of the Connector for Jira Service Management, see the AWS configurations for Connector for Jira Service Management - AWS Commercial Regions and Connector for Jira Service Management - AWS GovCloud West Region.

Note

If you use the Connector for Jira Service Management AWS Configuration template, go to the Service Catalog Administrator Guide.

For each AWS account, the Connector for Jira Service Management requires two sets of an access key identifier and a secret key for API access. These correspond to users in AWS Identity and Access Management (IAM). Specifically, you should set up:

  • An IAM user to sync AWS resources and to sync and manage AWS Support cases through Jira Service Management.

  • An IAM user able to perform end user functionality to provision and execute requests exposed through Jira Service Management, including any roles required to perform the provisioning and execution. We recommend launch roles for Service Catalog to comply with IAM best practices.

These can be the same user and can be an existing user. We recommend you assign two new users for Connector.

Note

To align with best practices, AWS recommends periodically rotating IAM user access keys. For more information, refer to Manage access keys for IAM users.