Identity and Access Management in Amazon Snowball Edge - Amazon Snowball Edge Developer Guide
Services or capabilities described in Amazon Web Services documentation might vary by Region. To see the differences applicable to the China Regions, see Getting Started with Amazon Web Services in China (PDF).

Effective November 7, 2025, Amazon Snowball Edge will only be available to existing customers. If you would like to use Amazon Snowball Edge, sign up prior to that date. New customers should explore Amazon DataSync for online transfers, Amazon Data Transfer Terminal for secure physical transfers, or Amazon Partner solutions. For edge computing, explore Amazon Outposts.

Identity and Access Management in Amazon Snowball Edge

Every Amazon Snowball Edge job must be authenticated. You do this by creating and managing the IAM users in your account. Using IAM, you can create and manage users and permissions in Amazon.

Amazon Snowball Edge users must have certain IAM-related permissions to access the Amazon Snowball Edge Amazon Web Services Management Console to create jobs. An IAM user that creates an import or export job must also have access to the right Amazon Simple Storage Service (Amazon S3) resources, such as the Amazon S3 buckets to be used for the job, Amazon KMS resources, Amazon SNS topic, and Amazon EC2-compatible AMI for edge compute jobs.

Important

For information about using IAM locally on your device, see Using IAM locally on a Snowball Edge.