Using Parameter Store and IAM Roles in AWS

In this hands-on learning activity, you will work with SSM Parameter Store and an ECS task IAM role. You will create an IAM policy and attach that policy to an ECS task IAM role. This policy will grant specific access to various application secrets in SSM Parameter Store, as well as to the KMS keys that encrypt them. You can then view the effects of policy changes on the container's permissions.

Sample IAM policy:

