bug(import): Bedrock Agent import fails on multi-action-group agents and missing gateway proxy Lambda
まだ誰も着手していません。
評価
- 難易度
- 4/5
- 見積もり時間
- 3〜5日
- 初心者へのやさしさ
- 48/100
- issue の種類
- バグ
- 明瞭さ
- おおむね明確
- 活発さ
- 静か
- 技術スタック
- aws, typescript
調査の方向性
src/cli/aws/bedrock-import.ts の fetchActionGroups()(218 行目付近)から始めて、gateway-target の codegen パスを追跡します。string、S3、missing-payload の apiSchema 形状でインポートを再現し、その後、proxy Lambda 作成の gateway-enabled フローを調査します。完了条件は、両方のインポートモードが報告された入力を未処理の例外なしで処理し、proxy Lambda を作成するか、明確で対応可能な失敗を報告することです。
索引モデルが issue の本文から書いたものです。
説明
Description
Customers migrating Bedrock Agents to AgentCore via the import-agent flow hit two distinct, reproducible failures. Both were originally reported against the Python starter toolkit (bedrock-agentcore-starter-toolkit), but since the AgentCore CLI (@aws/agentcore) is now the recommended migration tool, we should confirm the equivalent code paths here are correct and covered by tests.
Source: SIM V2200635700 / AWS Support Case 177764821500904 (ELLUCIAN, us-east-1). Agents: BI13NJQLYA (Megamind_Dev), 514OLCKKBT (Crowdstrike), U8V6BP3CRL (Ask_Ellucian, imports fine).
Bug 1 — Action-group translation crashes with 'str' object has no attribute 'get'
Agents with multiple action groups fail to translate even with --disable-gateway. Root cause in the starter toolkit: the code assumes actionGroup["apiSchema"] is always a dict, but the Bedrock Agent API returns it as a raw string for OpenAPI-hosted action groups.
- 0 action groups → imports fine
- 4 action groups → fails
The equivalent CLI path is fetchActionGroups() in src/cli/aws/bedrock-import.ts (~L218), where apiSchema.payload is assumed to be an object. We should verify string / S3 / missing-payload shapes are all handled without throwing.
Bug 2 — Gateway proxy Lambda is never created
With the default (gateway-enabled) migration, CreateGatewayTarget fails with:
ValidationException: Lambda function not found:
arn:aws:lambda:us-east-1:<acct>:function:gateway_proxy_<random>
CloudTrail showed zero CreateFunction calls during import — the tool references a dynamically-named proxy Lambda without ever creating it. Confirm whether the CLI's gateway-target codegen for imported agents creates (or documents the need to create) the proxy Lambda, rather than referencing a name that doesn't exist.
Steps to Reproduce
- Have a Bedrock Agent with 4+ action groups (some using OpenAPI/inline
apiSchema). agentcore import-agent --region us-east-1 --agent-id 514OLCKKBT --agent-alias-id LPPXEL2IK2 --target-platform strands --disable-gateway --output-dir out
→ Bug 1:Failed to translate agent! Error: 'str' object has no attribute 'get'- Run the same import without
--disable-gateway
→ Bug 2:CreateGatewayTarget ... Lambda function not found: gateway_proxy_<random>
Expected Behavior
- Action groups with string / S3 / inline
apiSchemapayloads translate without crashing. - Gateway-enabled import either creates the required proxy Lambda or fails with a clear, actionable message.
Actual Behavior
- Multi-action-group agents crash during translation.
- Gateway import references a non-existent proxy Lambda and fails.
Additional Context
- Bug 1 confirmed independent of gateway (repros with
--disable-gateway). - Bug 2 blocks all default-gateway migrations for this account; IAM perms (
lambda:CreateFunction,lambda:InvokeFunction) verified present. - Starter-toolkit fix for a related symptom shipped in
bedrock-agentcore-starter-toolkit0.3.9 (PR aws/bedrock-agentcore-starter-toolkit#515); customer reported the'str'...error still reproduced after upgrade.
- 主要言語
- TypeScript
- スター
- 291
- フォーク
- 96
- 平均マージ
- 21時間 31分
- マージ済み PR(30日)
- 217
コントリビューションガイド
はじめの一歩
- issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
- 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
- リポジトリをフォークし、ブランチを切って変更します。
- issue 番号を参照したプルリクエストを送ります。
aws/agentcore-cli のほかの issue
-
難易度 2/5 1〜3時間 初心者へのやさしさ 70/100
aws/agentcore-cli#2395 ·
-
難易度 2/5 1〜3時間 初心者へのやさしさ 75/100
aws/agentcore-cli#2392 ·
-
難易度 2/5 1〜3時間 初心者へのやさしさ 76/100
aws/agentcore-cli#2267 ·
-
難易度 2/5 1〜3時間 初心者へのやさしさ 72/100
aws/agentcore-cli#2258 ·
-
難易度 2/5 1〜3時間 初心者へのやさしさ 72/100
aws/agentcore-cli#2176 ·
aws/agentcore-cli の issue をすべて見る
似ている issue
-
難易度 2/5 1〜3時間 初心者へのやさしさ 74/100
-
security
難易度 2/5 1〜3時間 初心者へのやさしさ 72/100
IBM/node-sdk-core#373 ·
-
e2e-failure ready-to-code
難易度 2/5 1〜3時間 初心者へのやさしさ 86/100
-
bug
難易度 2/5 1〜3時間 初心者へのやさしさ 74/100
-
chore
難易度 2/5 1〜3時間 初心者へのやさしさ 88/100