AWS Console Access
The AWS Users view lets authorised project administrators grant StationOps users access to connected AWS accounts and open the AWS login URL.
Grant Access
- Open Project settings > SSO.
- Find the user's email address.
- Select Add Permission.
- Choose the connected AWS account.
- Choose Read Only, Power User, or Admin.
- Confirm the permission.
Only grant the minimum role required. Prefer Read Only for investigation, Power User for normal engineering work, and Admin only for account administration that cannot be completed with a narrower role.
Open AWS
Select Login at the top of the AWS Users view. StationOps opens the project AWS login URL in a new tab. The account and permission available to a user depend on the grants shown beneath their email address.
Remove Access
Select the remove control beside a permission and confirm the change. Remove access promptly when responsibilities change, and review privileged grants regularly.
AWS console access is separate from StationOps organisation membership and project permissions. A user may be able to inspect a StationOps project without having direct AWS console access.