If you're using AWS, you'll add the service role to your AWS management account as part of the AWS Quickstart process when you set up cloudtamer.io. You may need to add it again for accounts in the future depending on how you add your accounts, so these instructions review how to do that.
The service role is implemented via a CloudFormation template. It creates an AWS IAM role with a trust policy that allows cloudtamer.io to access the account's data. In the steps below, we recommend you use the default “full access” .json file as a best practice.
- In your AWS management account, navigate to the CloudFormation service.
- Click Create Stack.
- Upload the CloudFormation template. It can be downloaded within cloudtamer.io on the page where you add an AWS account for non-management accounts, as shown in the screenshot below. See the AWS Management Account Setup Guide (requires login; learn more here) for a template for your AWS management account (scroll to the bottom of the article and download the attached file named "billing-role-full-access.json").
- Name the stack:
- Replace the AWS Account with the AWS account number where cloudtamer.io is installed.
- Walk through the remainder of the prompts.