---
sourceDocument: Yokohama IT Operations Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/yokohama/it-operations-management

 Release :

    - yokohama

ft:locale :

    - en-US

ft:publication_title :

    - Yokohama IT Operations Management

ft:clusterId :

    - itom

bundleId :

    - itom

workflow :

    - Technology


---

# Configure MID Server for IAM roles

# Configure the MID Server for AWS IAM roles {#ariaid-title1}

* Release version: Yokohama
* 
* Updated January 30, 2025
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

Configure the MID Server to retrieve the temporary security
credentials associated with an IAM role.

## Before you begin

Role required: discovery_admin or sn_cmp.cloud_admin (for Cloud Provisioning and Governance)

## Procedure

1. Navigate to AllDiscoveryMID Servers.
2. Select a MID Server installed on an Amazon EC2 instance within the relevant AWS service account.
3. Open the Configuration Parameters related list.
4. Click New.
5. In the configuration parameter form, select mid.aws.instance_profile_name in the Parameter name field.
6. Enter the name of the IAM role attached to the EC2 Instance in the Value field.  
   Note:  
   AWS Cloud Discovery for "mid.aws.instance_profile_name" accepts both "role name" and "full ARN" as valid parameter values. For example, both of the following values are acceptable:  
   * arn:partition:service:region:account-id:resource-type/resource-id
   * resource-id
   {#config-mid-iam-roles__ul_j1v_f4d_w2c}

   The MID Server uses the same IAM role that is set up for
   the corresponding AWS service account. For
   more information, see
   [Configure temporary credential access for trusted AWS accounts](https://servicenow-prod.fluidtopics.net/tnnDDMp~UwhC6f0GVUN4xg "Configure the trusting account whose resources need to be accessed, to rely on the trusted account using the Identity and Access Management (IAM) role.").
   For operational information about creating AWS roles, refer to the Amazon documentation on [Creating a role to delegate permissions to an
   IAM user](https://docs.aws.amazon.com/IAM/latest/UserGuide/id_roles_create_for-user.html).
7. Click Submit.  
   The new parameter is listed in the MID Server record.

*[\>]: and then


