<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Cluster creation failed on Cloudbreak hosted on AWS in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/Cluster-creation-failed-on-Cloudbreak-hosted-on-AWS/m-p/242427#M204228</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I followed the exact steps to launch Cloudbreak (v2.7.0) on AWS :&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://hortonworks.github.io/cloudbreak-documentation/latest/aws-launch/index.html" target="_blank"&gt;https://hortonworks.github.io/cloudbreak-documentation/latest/aws-launch/index.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;As a pre-requisite, below two roles were created (based on AssumeRole and cb-policy json files as mentioned):&lt;BR /&gt;&lt;BR /&gt;CloudbreakRole:   Allows Cloudbreak to assume other IAM roles - specifically the CredentialRole.&lt;BR /&gt;CredentialRole:   Allows Cloudbreak to create AWS resources required for clusters.&lt;BR /&gt;&lt;BR /&gt;(Referring to &lt;A href="https://hortonworks.github.io/cloudbreak-documentation/latest/aws-pre/index.html)" target="_blank"&gt;https://hortonworks.github.io/cloudbreak-documentation/latest/aws-pre/index.html)&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;I could successfully launch Cloudbreak and create a Cloudbreak credential. &lt;BR /&gt;&lt;BR /&gt;I used "Role based" authentication to create cluster. Used platform as HDP 2.6 and blueprint: "EDW-ETL: Apache Hive, Apache Spark 2" with 2 nodes. &lt;BR /&gt;However, cluster creation is failing with the below errors:&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;java.util.concurrent.ExecutionException: com.sequenceiq.cloudbreak.cloud.exception.CloudConnectorException: AWS CloudFormation stack reached an error state: CREATE_FAILED reason: API: autoscaling:CreateAutoScalingGroup The default Service-Linked Role for Auto Scaling could not be created.  com.amazonaws.services.identitymanagement.model.AmazonIdentityManagementException: User: arn:aws:sts::&amp;lt;account id&amp;gt;:assumed-role/CredentialRole/hadoop-provisioning is not authorized to perform: iam:CreateServiceLinkedRole on resource: arn:aws:iam::&amp;lt;account id&amp;gt;:role/aws-service-role/autoscaling.amazonaws.com/AWSServiceRoleForAutoScaling (Service: AmazonIdentityManagement; Status Code: 403; Error Code: AccessDenied; Request ID: cc25dd31-1a50-11e9-bef1-a990dfdb8f39)&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Can you please help?&lt;/P&gt;</description>
    <pubDate>Sat, 19 Jan 2019 02:47:18 GMT</pubDate>
    <dc:creator>pushpak_nandi</dc:creator>
    <dc:date>2019-01-19T02:47:18Z</dc:date>
  </channel>
</rss>

