# Support IAM Instance Role Permissions

**URL:** <https://discuss.elastic.co/t/support-iam-instance-role-permissions/229701>\
**Category:** Beats\
**Created:** [April 24, 2020, 5:48pm UTC](https://discuss.elastic.co/t/support-iam-instance-role-permissions/229701 "2020-04-24T17:48:53Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![sheldonh](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/sheldonh/32/66466_2.png) [@sheldonh](https://discuss.elastic.co/u/sheldonh)\
**Post date:** [April 24, 2020, 5:48pm UTC](https://discuss.elastic.co/t/support-iam-instance-role-permissions/229701/1 "2020-04-24T17:48:53Z")

</div>

The configuration for modules related to AWS provide the need for access key and secret key.  
I want to define the permissions in the monitoring instance role and not explicitly manage a new set of access keys for grabbing metrics.

Is this supported and I'm just missing it?

I've not used any monitoring tool so far that required these explicitly defined, as most allowed not defining and just using the instance role permissions.

---

<div class="post-metadata">

**Author:** ![kvch](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/kvch/32/72058_2.png) [@kvch](https://discuss.elastic.co/u/kvch)\
**Post date:** [April 27, 2020, 2:35pm UTC](https://discuss.elastic.co/t/support-iam-instance-role-permissions/229701/2 "2020-04-27T14:35:47Z")

</div>

The support is going to be released for Filebeat an Metricbeat in v7.8: [https://github.com/elastic/beats/pull/17658](https://github.com/elastic/beats/pull/17658)

---

<div class="post-metadata">

**Author:** ![sheldonh](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/sheldonh/32/66466_2.png) [@sheldonh](https://discuss.elastic.co/u/sheldonh)\
**Post date:** [April 28, 2020, 7:15pm UTC](https://discuss.elastic.co/t/support-iam-instance-role-permissions/229701/3 "2020-04-28T19:15:16Z")

</div>

Will this apply to all the beat utilities, metricbeat, filebeat and more? New to the ecosystem so not sure if this is a fix that will resolve for all tooling.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [May 26, 2020, 9:15pm UTC](https://discuss.elastic.co/t/support-iam-instance-role-permissions/229701/4 "2020-05-26T21:15:22Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
