const podIdentityRole = new Role(this, 'PodIdentityRole', { assumedBy: new SessionTagsPrincipal(new ServicePrincipal('pods.eks.amazonaws.com')), managedPolicies: [ ManagedPolicy.fromAwsManagedPolicyName('AmazonEC2ContainerRegistryReadOnly'), ] });