AmazonVPCFullAccess,
AutoScalingFullAccess,
Application Load Balancer:
AssumeRolePolicyDocument={
"Version": "2008-10-17",
"Statement": [{
"Effect": "Allow",
"Principal": {"Service": ["ecs.amazonaws.com", "application-autoscaling.amazonaws.com"]},
"Action": ["sts:AssumeRole"]
}]
},
with ManagedPolicyArns
["arn:aws:iam::aws:policy/service-role/AmazonEC2ContainerServiceRole",
"arn:aws:iam::aws:policy/service-role/AmazonEC2ContainerServiceAutoscaleRole"]
Может быть лучше написать пользовательские политики с наименьшими правами доступа