Resolve #5557 error instantiating route53 challenge solver #1466
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Problem : cert-manager/cert-manager#5557
Version validated on : v1.14.4
Fix: Incorrect value in Cluster Issuer section and missing IAM permission.
When using Route53 authentication, IAM RSA account is created and Cert-manager configured with respective ServiceAccount. Once this is done, there is no need to specify
role:
when creating ClusterIssuer as mentioned in the documentation. Adding Role will result in Access error."route53:GetChange" policy is required for Certmanager. Updated policy document with necessary permissions.