Delete & update in certain IAM resource #19
Labels
block stable?
This issue needs to be clarified before major release.
help wanted
Extra attention is needed
question
Further information is requested
As AWS does not allow for in-place updates of certain resources (Role, PolicyAttachment, ...) we currently delete the previous resource, and recreate it. This might cause issues, when hitting resource limits?
How to make this safe? The point is, if this happens in production due to something triggering the re-creation, this might leave a Role uncreated and cause services, using this role, to fail. Not sure about it...
aws-iam-operator/controllers/role_controller.go
Lines 154 to 177 in 54e6ee5
The text was updated successfully, but these errors were encountered: