Skip to content
Discussion options

You must be logged in to vote

And (again, as far as I can tell), the AWS account is the account that the pod is running in.

That's correct.

To the best of my knowledge, everything you need to do to enable this is on the AWS end. Taking Kargo out of the equation entirely and speaking generally about a role in account A requiring access ECR repos in account B, then the registry's policies simply need to grant permissions to a role in account A, identified by its ARN.

Replies: 1 comment 1 reply

Comment options

You must be logged in to vote
1 reply
@pbrousseau-sdx
Comment options

Answer selected by pbrousseau-sdx
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants