Enable ISM for role. But not all access to cluster


Im confused about authorizations for user ISM Plugin.

Documentation say : your user role needs to be mapped to the all_access role that gives you full access to the cluster

It s crazy to grant all access cluster for users just for use ISM Plugin.

I don’t understand or its really that ?

