def _create_role()

in custom-resource/dms_iam_roles/iam.py [0:0]


def _create_role(role_name, policy_arn, assume_role_policy):
    logger.info("Creating role {} ...".format(role_name))

    client.create_role(
        Path="/",
        RoleName=role_name,
        AssumeRolePolicyDocument=json.dumps(assume_role_policy),
        Description="IAM role for AWS DMS",
    )

    logger.info("Attaching {} policy ...".format(policy_arn))
    client.attach_role_policy(RoleName=role_name, PolicyArn=policy_arn)