PowerProtect:云快照管理器拷贝作业在处理请求时失败并显示错误

Summary: PowerProtect:Cloud Snapshot Manager 拷贝作业失败,并显示错误:{“errors”:[{“code”:1004,“message”:“处理请求时遇到错误。”,“details”:“处理请求时遇到错误。”}]}

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Symptoms

将快照从 Amazon Web Services (AWS) 复制到 Data Domain Virtual Edition (DDVE) 的复制作业失败,并显示类似于以下内容的错误消息:
"Error occured fetching session from csm proxy : Error: {"errors":[{"code":1004,"message":"Error encountered while processing the request.","details":"Error encountered while processing the request."}]} Error code: 3041"
没有 AWS ECS 群集,并且在 AWS 帐户中创建任务定义。

AWS CloudFormation 日志显示类似于以下内容的错误消息:
# TaskDefinition CREATE_FAILED
Resource handler returned message: "Invalid request provided: Create TaskDefinition: User: arn:aws:sts::sideID:assumed-role/CSMRole/xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx is not authorized to perform: ecs:TagResource on resource: arn:aws:ecs:ZONE:sideID:task-definition/csm-xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx_proxyTaskDefinition:* because no identity-based policy allows the ecs:TagResource action (Service: AmazonECS; Status Code: 400; Error Code: AccessDeniedException; Request ID: xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx; Proxy: null)" (RequestToken: 0d5dea1c-e158-e5e2-0080-1e2c521679dc, HandlerErrorCode: InvalidRequest)
此时会看到类似于以下内容的消息:
# Cluster CREATE_FAILED
Resource handler returned message: "Error occurred during operation 'CreateCluster SDK error: User: arn:aws:sts::sideID:assumed-role/CSMRole/xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx is not authorized to perform: ecs:TagResource on resource: arn:aws:ecs:ZONE:sideID:cluster/csm-xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx_proxyCluster because no identity-based policy allows the ecs:TagResource action (Service: AmazonECS; Status Code: 400; Error Code: AccessDeniedException; Request ID: xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx; Proxy: null)'." (RequestToken: xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx, HandlerErrorCode: GeneralServiceException)

Cause

AWS 权限 ecs:TagResource 分配给 Cloud Snapshot Manager 所使用的角色的 IAM 策略中缺少。

Resolution

更新分配给 Cloud Snapshot Manager 所用角色的 IAM 策略。

以下文档链接可用于查找有关如何创建或更新 IAM 策略的步骤:PowerProtect Cloud Snapshot Manager 联机帮助 |戴尔美国

“JSON”选项卡下,进行如下图所示的更改:

CSM 策略更改以添加 esc:TagResource 权限。

Affected Products

Cloud Snapshot Manager, PowerProtect Cloud Snapshot
Article Properties
Article Number: 000223744
Article Type: Solution
Last Modified: 29 ago 2025
Version:  2
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.