在AWS控制台中进入Workspace的管理页面,找到“组策略”选项。在“策略列表”中找到并编辑当前Workspace的组策略。
在策略中添加以下配置信息:
"UserRights": { "SeImpersonatePrivilege": { "Type": "AWS::IAM::Policy", "Properties": { "PolicyName": "SeImpersonatePrivilege", "PolicyDocument": { "Statement": [{ "Effect": "Allow", "Action": [ "iwa:ConnectToIwa", "iwa:CreateEnvironment", "iwa:CreateIwaUser", "iwa:DeleteEnvironment", "iwa:DeleteIwaUser", "iwa:GetEnvironment", "iwa:GetIwaUser", "iwa:ListEnvironments", "iwa:ListIwaUsers", "iwa:StartSession", "iwa:StopSession", "ssm:GetAutomationExecution", "ssm:ListExecutions", "ssm:SendAutomationSignal", "ssm:TerminateAutomationExecution", "ec2:CreateNetworkInterface", "ec2:DescribeInstances", "ec2:DeleteNetworkInterface", "ec2:DescribeNetworkInterfaces", "ec2:AttachNetworkInterface" ], "Resource": "*" }] }, "Roles": [{ "Ref": "IamRole" }] } } }
保存修改后的策略并重启Workspace,即可使用IIB连接ODBC源并进行集成Windows身份验证。同时,还需确保AWS环境中IIB和ODBC驱动程序的版本和兼