Configure Bedrock Cross-Account Access

27 steps

Grant your DevOpser app access to Amazon Bedrock via cross-account IAM.

  1. 1

    After your site is fully deployed and marked as “Active

    Configure Bedrock Cross-Account Access, step 1
  2. 2

    Click “Configure Bedrock

    Configure Bedrock Cross-Account Access, step 2
  3. 3

    In IAM, create a policy by following the instructions.

    Configure Bedrock Cross-Account Access, step 3
  4. 4

    In AWS IAM, create a role and attach the policy you made - following the instructions in the “Configure Bedrock” page.

  5. 5

    After the role has been created, copy the trust policy from the “Configure Bedrock” page.

    Configure Bedrock Cross-Account Access, step 5
  6. 6

    In AWS IAM, Click “Roles

    Configure Bedrock Cross-Account Access, step 6
  7. 7

    Click your “CrossAccountBedrockRole” (or whatever you named it)

    Configure Bedrock Cross-Account Access, step 7
  8. 8

    Click “Trust relationships

    Configure Bedrock Cross-Account Access, step 8
  9. 9

    Click “Edit trust policy

    Configure Bedrock Cross-Account Access, step 9
  10. 10

    Select the entire trust policy.

    Configure Bedrock Cross-Account Access, step 10
  11. 11

    Paste the trust policy from the DevOpser “Configure Bedrock” page - press [[cmd]] + [[v ]]

  12. 12

    Click “Update policy

    Configure Bedrock Cross-Account Access, step 12
  13. 13

    Click the “copy and paste” icon in the role to copy the role ARN.

    Configure Bedrock Cross-Account Access, step 13
  14. 14

    Switch to tab DevOpser AI Webhosting"

  15. 15

    Click the “Cross Account Role ARN” field.

    Configure Bedrock Cross-Account Access, step 15
  16. 16

    Paste the cross account role ARN into the field by pressing [[cmd]] + [[v]]

  17. 17

    Click “Save Configuration

    Configure Bedrock Cross-Account Access, step 17
  18. 18

    Click “Sites

    Configure Bedrock Cross-Account Access, step 18
  19. 19

    Click your site to get to the Site Detail page.

    Configure Bedrock Cross-Account Access, step 19
  20. 20

    You should see your Staging and Production workspaces in a planning state.

    Configure Bedrock Cross-Account Access, step 20
  21. 21

    Your Site status should be in “updating” status

    Configure Bedrock Cross-Account Access, step 21
  22. 22

    Once both workspaces are in “applied” status and the Site Status is “Active

    Configure Bedrock Cross-Account Access, step 22
  23. 23

    Click “Production” or “Staging” to navigate to your site.

    Configure Bedrock Cross-Account Access, step 23
  24. 24

    Click the “Message...” field.

    Configure Bedrock Cross-Account Access, step 24
  25. 25

    Type “tell me a story” or another test prompt

  26. 26

    Click “Send

    Configure Bedrock Cross-Account Access, step 26
  27. 27

    If you have correctly followed the instructions, you will see Bedrock providing output - congratulations, you have successfully configured Bedrock!

    Configure Bedrock Cross-Account Access, step 27