Cyberduck Mountain Duck CLI

#10565 closed defect (fixed)

Cannot list KMS keys when using IAM Cross Account Roles

Reported by: shanemeyers Owned by: dkocher
Priority: normal Milestone: 6.9.0
Component: s3 Version: 6.8.3
Severity: normal Keywords:
Cc: Architecture:
Platform: macOS 10.13

Description (last modified by dkocher)

I'm trying to use Cyberduck with cross account roles and KMS encryption. When I go to the bucket info to set the encryption key, I get a response of "unknown" in the drop down. See https://www.evernote.com/l/ADWy3EPIlTFDt5XkrjMW2lOfwNCABQVf2Eg. Along with this I'm getting an error of "Unknown application error. Secret key cannot be null." The error feels related, but I'm not sure.

https://content.evernote.com/shard/s53/sh/b2dc43c8-9531-43b7-95e4-ae3316da539f/c0d08005055fd848/res/50a8f895-26bf-4f25-a7a8-8501942402e4/skitch.png

If I create an IAM user in the AWS account that has identical permissions to the role assumed, I'm able to see the keys. See https://www.evernote.com/l/ADWXNccmWJ9DU7CzpTFWwNL_j-PRu5RXVCU

Change History (4)

comment:1 Changed on Jan 5, 2019 at 4:37:37 PM by dkocher

  • Summary changed from Can't list KMS keys when using IAM Cross Account Roles to Cannot list KMS keys when using IAM Cross Account Roles

comment:2 Changed on Jan 5, 2019 at 9:30:18 PM by dkocher

  • Description modified (diff)

comment:3 Changed on Jan 5, 2019 at 9:57:49 PM by dkocher

  • Milestone set to 6.9.0
  • Owner set to dkocher
  • Status changed from new to assigned

comment:4 Changed on Jan 8, 2019 at 10:10:56 AM by yla

  • Resolution set to fixed
  • Status changed from assigned to closed

In r45944.

Note: See TracTickets for help on using tickets.
swiss made software