<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: AWS Account Integrations with Dynatrace SaaS: &amp;quot;missing permission&amp;quot; error in Cloud platforms</title>
    <link>https://community.dynatrace.com/t5/Cloud-platforms/AWS-Account-Integrations-with-Dynatrace-SaaS-quot-missing/m-p/197907#M1001</link>
    <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/17361"&gt;@sivart_89&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;We only have AWS accounts in us-east-1 and us-east-2 and deny any traffic trying to go elsewhere. Would this be why I am seeing this error?&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Most probably, yes. This warning is raised when the AWS Monitoring module gets an AccessDenied or Unauthorized response.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/17361"&gt;@sivart_89&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;One of our customers has S3 buckets in his account but is not seeing anything in Dynatrace even though the policy has that permission and within Dynatrace his account is setup as the below. I'm wondering if we aren't seeing S3 metrics because we don't allow access to all regions. Does Dynatrace require open access to all regions to collect any S3 metrics?&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Currently, Dynatrace AWS monitoring supports only Amazon S3 request metrics. &lt;A href="https://docs.aws.amazon.com/AmazonS3/latest/userguide/metrics-dimensions.html#s3-request-cloudwatch-metrics" target="_blank"&gt;https://docs.aws.amazon.com/AmazonS3/latest/userguide/metrics-dimensions.html#s3-request-cloudwatch-metrics&lt;/A&gt;&lt;BR /&gt;By default, request metrics aren't reported. The customer needs to enable them in the AWS S3 console to have them reported.&lt;BR /&gt;Last paragraph in Dynatrace S3 monitoring documentation:&lt;BR /&gt;&lt;A href="https://www.dynatrace.com/support/help/how-to-use-dynatrace/infrastructure-monitoring/cloud-platform-monitoring/amazon-web-services-monitoring/aws-supporting-service-metrics/simple-storage-service#prerequisites" target="_blank"&gt;https://www.dynatrace.com/support/help/how-to-use-dynatrace/infrastructure-monitoring/cloud-platform-monitoring/amazon-web-services-monitoring/aws-supporting-service-metrics/simple-storage-service#prerequisites&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 07 Nov 2022 15:02:15 GMT</pubDate>
    <dc:creator>dawid_kaszubski</dc:creator>
    <dc:date>2022-11-07T15:02:15Z</dc:date>
    <item>
      <title>AWS Account Integrations with Dynatrace SaaS: "missing permission" error</title>
      <link>https://community.dynatrace.com/t5/Cloud-platforms/AWS-Account-Integrations-with-Dynatrace-SaaS-quot-missing/m-p/197811#M998</link>
      <description>&lt;P&gt;For all of the AWS accounts I have added into Dynatrace to collect CloudWatch metrics I see the below even though the IAM policy we have does have that permission. We only have AWS accounts in us-east-1 and us-east-2 and deny any traffic trying to go elsewhere. Would this be why I am seeing this error?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="travis_anderson_0-1667573758062.png" style="width: 400px;"&gt;&lt;img src="https://community.dynatrace.com/t5/image/serverpage/image-id/8373i775AE64514171FD2/image-size/medium?v=v2&amp;amp;px=400" role="button" title="travis_anderson_0-1667573758062.png" alt="travis_anderson_0-1667573758062.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;One of our customers has S3 buckets in his account but is not seeing anything in Dynatrace even though the policy has that permission and within Dynatrace his account is setup as the below. I'm wondering if we aren't seeing S3 metrics because we don't allow access to all regions. Does Dynatrace require open access to all regions to collect any S3 metrics?&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="travis_anderson_1-1667573945106.png" style="width: 400px;"&gt;&lt;img src="https://community.dynatrace.com/t5/image/serverpage/image-id/8374i28C7B2DB7F171034/image-size/medium?v=v2&amp;amp;px=400" role="button" title="travis_anderson_1-1667573945106.png" alt="travis_anderson_1-1667573945106.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 07 Nov 2022 09:53:21 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Cloud-platforms/AWS-Account-Integrations-with-Dynatrace-SaaS-quot-missing/m-p/197811#M998</guid>
      <dc:creator>sivart_89</dc:creator>
      <dc:date>2022-11-07T09:53:21Z</dc:date>
    </item>
    <item>
      <title>Re: AWS Account Integrations with Dynatrace SaaS: "missing permission" error</title>
      <link>https://community.dynatrace.com/t5/Cloud-platforms/AWS-Account-Integrations-with-Dynatrace-SaaS-quot-missing/m-p/197907#M1001</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/17361"&gt;@sivart_89&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;We only have AWS accounts in us-east-1 and us-east-2 and deny any traffic trying to go elsewhere. Would this be why I am seeing this error?&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Most probably, yes. This warning is raised when the AWS Monitoring module gets an AccessDenied or Unauthorized response.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/17361"&gt;@sivart_89&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;One of our customers has S3 buckets in his account but is not seeing anything in Dynatrace even though the policy has that permission and within Dynatrace his account is setup as the below. I'm wondering if we aren't seeing S3 metrics because we don't allow access to all regions. Does Dynatrace require open access to all regions to collect any S3 metrics?&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Currently, Dynatrace AWS monitoring supports only Amazon S3 request metrics. &lt;A href="https://docs.aws.amazon.com/AmazonS3/latest/userguide/metrics-dimensions.html#s3-request-cloudwatch-metrics" target="_blank"&gt;https://docs.aws.amazon.com/AmazonS3/latest/userguide/metrics-dimensions.html#s3-request-cloudwatch-metrics&lt;/A&gt;&lt;BR /&gt;By default, request metrics aren't reported. The customer needs to enable them in the AWS S3 console to have them reported.&lt;BR /&gt;Last paragraph in Dynatrace S3 monitoring documentation:&lt;BR /&gt;&lt;A href="https://www.dynatrace.com/support/help/how-to-use-dynatrace/infrastructure-monitoring/cloud-platform-monitoring/amazon-web-services-monitoring/aws-supporting-service-metrics/simple-storage-service#prerequisites" target="_blank"&gt;https://www.dynatrace.com/support/help/how-to-use-dynatrace/infrastructure-monitoring/cloud-platform-monitoring/amazon-web-services-monitoring/aws-supporting-service-metrics/simple-storage-service#prerequisites&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 07 Nov 2022 15:02:15 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Cloud-platforms/AWS-Account-Integrations-with-Dynatrace-SaaS-quot-missing/m-p/197907#M1001</guid>
      <dc:creator>dawid_kaszubski</dc:creator>
      <dc:date>2022-11-07T15:02:15Z</dc:date>
    </item>
  </channel>
</rss>

