PowerProtect: Falha no trabalho de cópia do Cloud Snapshot Manager com erro durante o processamento da solicitação

Summary: PowerProtect: Falha no trabalho de cópia do Cloud Snapshot Manager com erro: {"errors":[{"code":1004,"message":"Error encountered while processing the request.","details":"Error encountered while processing the request."}]} ...

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Symptoms

Os trabalhos de cópia para copiar snapshots do Amazon Web Services (AWS) para o Data Domain Virtual Edition (DDVE) estão falhando com uma mensagem de erro semelhante à seguinte:
"Error occured fetching session from csm proxy : Error: {"errors":[{"code":1004,"message":"Error encountered while processing the request.","details":"Error encountered while processing the request."}]} Error code: 3041"
Não há clusters do AWS ECS, e as definições de tarefas são criadas na conta da AWS.

Os logs do AWS CloudFormation mostram mensagens de erro semelhantes às seguintes:
# TaskDefinition CREATE_FAILED
Resource handler returned message: "Invalid request provided: Create TaskDefinition: User: arn:aws:sts::sideID:assumed-role/CSMRole/xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx is not authorized to perform: ecs:TagResource on resource: arn:aws:ecs:ZONE:sideID:task-definition/csm-xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx_proxyTaskDefinition:* because no identity-based policy allows the ecs:TagResource action (Service: AmazonECS; Status Code: 400; Error Code: AccessDeniedException; Request ID: xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx; Proxy: null)" (RequestToken: 0d5dea1c-e158-e5e2-0080-1e2c521679dc, HandlerErrorCode: InvalidRequest)
Uma mensagem semelhante à seguinte é exibida:
# Cluster CREATE_FAILED
Resource handler returned message: "Error occurred during operation 'CreateCluster SDK error: User: arn:aws:sts::sideID:assumed-role/CSMRole/xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx is not authorized to perform: ecs:TagResource on resource: arn:aws:ecs:ZONE:sideID:cluster/csm-xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx_proxyCluster because no identity-based policy allows the ecs:TagResource action (Service: AmazonECS; Status Code: 400; Error Code: AccessDeniedException; Request ID: xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx; Proxy: null)'." (RequestToken: xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx, HandlerErrorCode: GeneralServiceException)

Cause

Permissão do AWS ecs:TagResource está ausente na política de IAM atribuída à função usada pelo Cloud Snapshot Manager.

Resolution

Atualize a política do IAM atribuída à função usada pelo Cloud Snapshot Manager. 

O link da documentação a seguir pode ser usado para encontrar etapas sobre como criar ou atualizar políticas do IAM: Ajuda on-line do PowerProtect Cloud Snapshot Manager | Dell EUA

Na guia JSON, faça as alterações conforme mostrado na imagem abaixo:

Alteração da política do CSM para adicionar a permissão esc:TagResource.

Affected Products

Cloud Snapshot Manager, PowerProtect Cloud Snapshot
Article Properties
Article Number: 000223744
Article Type: Solution
Last Modified: 29 ago 2025
Version:  2
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.