Creating a LakeFormation Role and Granting Permissions
If a role has some permissions on resources (such as databases), users or user groups with this role also have the corresponding resource operation permissions.
Constraints
If a service interconnected with a LakeFormation instance requires role authorization, the LakeFormation agency must contain the permissions of the role. For example, if the query permission of a role is required after LakeFormation is interconnected with an MRS cluster, select lakeformation:role:describe when creating a LakeFormation agency.
Creating a Role and Granting Permissions
- Log in to the LakeFormation console.
- Select the target LakeFormation instance from the drop-down list box on the left and choose Data Permissions > Roles.
- Click Create, set Role Name and Description, and click OK.
- Grant permissions to the created role. For details, see Configuring LakeFormation Metadata Permissions. Specifically:
- Entity Type: Select Role.
- Role: Select the role to be authorized.
- Set other parameters as needed.
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot