You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
With 4.1.1, the "Log into Amazon ECR with profile default" step prints this and exits successfully:
Removing login credentials for xxxxxxx.dkr.ecr.us-east-1.amazonaws.com
WARNING! Your password will be stored unencrypted in /home/circleci/.docker/config.json.
Configure a credential helper to remove this warning. See
https://docs.docker.com/engine/reference/commandline/login/#credentials-store
Login Succeeded
However, if I upgrade to 4.1.2, I get
Removing login credentials for xxxxxxx.dkr.ecr.us-east-1.amazonaws.com
An error occurred (AccessDeniedException) when calling the GetAuthorizationToken operation: User: arn:aws:iam::xxxxxxx:user/xxxxxxx is not authorized to perform: ecr:GetAuthorizationToken on resource: * because no identity-based policy allows the ecr:GetAuthorizationToken action
Error: Cannot perform an interactive login from a non TTY device
Exited with code exit status 1
and the build fails.
Expected behavior
Between versions of aws-cli, there should not have been a change in behavior.
The text was updated successfully, but these errors were encountered:
Hey @brivu, our config is quite large and has lots of details. I'm not sure that I have a more minimal version handy. I can provide the policy on the role if that would be helpful?
Orb version
9.0.1
What happened
When using aws-cli 4.1.1, I'm able to build my image with this step:
With 4.1.1, the "Log into Amazon ECR with profile default" step prints this and exits successfully:
However, if I upgrade to 4.1.2, I get
and the build fails.
Expected behavior
Between versions of aws-cli, there should not have been a change in behavior.
The text was updated successfully, but these errors were encountered: