Advance Identity Flashcards
1
Q
AWS STS (SecurityToken Service)
A
Enables you to create temporary, limited- privileges credentials to access your AWS
resources
2
Q
Amazon Cognito
A
- Identity for your Web and Mobile applications users (potentially millions)
- Instead of creating them an IAM user, you create a user in Cognito
3
Q
AWS Managed Microsoft AD
A
• Create your own AD in AWS, manage users
locally, supports MFA
• Establish “trust” connections with your on- premise AD
4
Q
AD Connector
A
- Directory Gateway (proxy) to redirect to on- premise AD
* Users are managed on the on-premise AD
5
Q
Simple AD
A
- AD-compatible managed directory on AWS
* Cannot be joined with on-premise AD
6
Q
AWS Single Sign-On (SSO)
A
- Centrally manage Single SignOn to access multiple accounts and 3rd-party business applications
- Integrations: SAML, Organizations, Active Directory