IAM Permissions

To perform data protection and disaster recovery operations, you must specify IAM roles whose permissions backup appliances will use to access AWS services and resources.

When you deploy a backup appliance, the Default Backup Restore IAM role is automatically created and added to the appliance. This IAM role is assigned all permissions required to perform operations in the same AWS account where the backup appliance resides. However, you can manually create additional IAM roles with granular permissions to perform specific operations in this or in other AWS accounts using the AWS Management Console, and then add them to the backup appliance.

For more information on IAM roles, see Managing IAM Roles.

In This Section

Page updated 2026-07-24

Page content applies to build 13.1.0.411