Why do we need the ec2:CreateTags and ec2:DeleteTags permissions?

User15787040559
Databricks Employee
Databricks Employee

Why do we need the ec2:CreateTags and ec2:DeleteTags permissions?

Are they required?

Are ec2 tags used internally as well?

User15787040559
Databricks Employee
Databricks Employee

Yes, it’s required. It’s how Databrics tracks and tags resources.

The tags are used to identify the owner of clusters on the AWS side and Databricks uses the tag information internally as well.