Using the Copy DBR Feature

The Copy DBR functionality allows customers to create a subset of charges from the Detailed Billing Report (DBR) for a specific payee, and copy that file into an S3 bucket inside a payee account.

To access, go to the left navigation pane and choose Cost > AWS Partner Tools > DBR > Copy.

Procedure

  1. From the Copy Complete Detailed Billing Report tab, select the Configure S3 bucket to copy DBR into checkbox.
  2. Create an S3 bucket inside the payee to use as a destination for the payee DBR file. You can also use an existing S3 bucket.

    The S3 bucket must be part of the specific payee account or the payer account.
  3. In the Bucket Name text field, type the name of the S3 bucket.
  4. From the Cost Type drop-down menu, select Amazon to get the unblended cost or Custom to get the list cost.
  5. Add the credentials.

    If the S3 Bucket exists in the current payer account:

    1. Select the Use current CloudCheckr credentials checkbox.
    2. To ensure that the Copy DBR function works correct, update the IAM policy to include the following permissions:

      {    "Version": "2012-10-17",    "Statement": [        {            "Sid": "Stmt1443712554000",            "Effect": "Allow",            "Action": [                "s3:DeleteObject",                "s3:GetBucketLocation",                "s3:ListObject",                "s3:PutObject"            ],            "Resource": [                "arn:aws:s3:::your-target-S3-bucket-name-here*"            ]        }    ]}

    If the S3 bucket exists in a different account or the payee account:

    1. Go to the Add new credentials section and paste the IAM access key and secret key.
    2. To ensure that the Copy DBR function works correct, update the IAM policy to include the following permissions:

      {
                    "Version": "2012-10-17",
                    "Statement": [
                        {
                            "Sid": "Stmt1443712554000",
                            "Effect": "Allow",
                            "Action": [
                                "s3:DeleteObject",
                                "s3:GetBucketLocation",
                                "s3:ListObject",
                                "s3:PutObject"
                            ],
                            "Resource": [
                                "arn:aws:s3:::your-target-S3-bucket-name-here*"
                            ]
                        }
                    ]
                }

    When adding the policy with the additional permissions, you must append a * is added at the end of the bucket name to add the DBR to the S3 bucket. In the sample permissions, a * is appended to the end of the bucket name arn:aws:s3:::your-target-S3-bucket-name-here*.

How did we do?