AWS rosa documentation change
Summary
Updated policy description to explicitly mention 'Deregister' targets with target groups alongside existing 'Register' permission.
Security assessment
Change adds verb symmetry in documentation but does not indicate security issue remediation or introduce new security features. Appears to be a documentation clarification of existing permissions.
Diff
diff --git a/rosa/latest/userguide/security-iam-awsmanpol.md b/rosa/latest/userguide/security-iam-awsmanpol.md index ea815d5d1..66150b96c 100644 --- a//rosa/latest/userguide/security-iam-awsmanpol.md +++ b//rosa/latest/userguide/security-iam-awsmanpol.md @@ -249 +249 @@ This policy includes the following permissions that allow the kube controller to - * `elasticloadbalancing` — Create and manage load balancers and their policies. Create and manage load balancer listeners. Register targets with target groups and manage target groups. Register and de-register Amazon EC2 instances with a load balancer, and add tags to load balancers. + * `elasticloadbalancing` — Create and manage load balancers and their policies. Create and manage load balancer listeners. Register and Deregister targets with target groups and manage target groups. Register and de-register Amazon EC2 instances with a load balancer, and add tags to load balancers.