IAM error it happens to the lots of project .Why u have restrction to IAM most of the time

I tried to create the below role and attached it to the ec2 .while connecting to the ec2 with session manager it showed permission errors .it was a week pefore . i can barely remember iam permission denied

.

  • AmazonSSMManagedInstanceCore

  • AmazonS3ReadOnlyAccess

  • Failed to describe instance information

User: arn:aws:iam::733166649296:user/odl_user_1004496 is not authorized to perform: ssm:DescribeInstanceInformation on resource: arn:aws:ssm:us-east-1:733166649296:* with an explicit deny in a service control policy

I got the below error when i tried to connet to the instance

AWS Three Tier Web Application Architecture (workshops.aws)

I close this ticket, it’s duplicate with