Advanced Identity Flashcards

1
Q

AWS STS (SecurityToken Service)

A

Enables you to create temporary, limited- privileges credentials to access your AWS resources.

• Short-term credentials: you configure expiration period

Use cases
• Identity federation
• IAM Roles for cross/same account access
• IAM Roles for Amazon EC2

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Amazon Cognito

A

• Identity for your Web and Mobile applications users (potentially millions)

• Instead of creating them an IAM user, you create a user in Cognito

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is Microsoft Active Directory (AD)?

A

It’s a way for you to manage users, computers, printers, and so on, usually within on-premises system.

• Database of objects
• Centralized security management, create account, assign permissions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

AWS Directory Services

A

Enables your directory-aware workloads and AWS resources to use managed Active Directory (AD) in AWS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

AWS IAM Identity Center

A

Centrally manage Single Sign-On to access multiple accounts and 3rd-party business applications.

• Integrated with AWS Organizations
• Supports SAML 2.0 markup
• Integration with on-premise Active Directory

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Advanced Identity - Summary

A

IAM
• Identity and Access Management inside your AWS account
• For users that you trust and belong to your company

• Organizations: manage multiple AWS accounts

• Security Token Service (STS): temporary, limited-privileges credentials to access AWS resources

• Cognito: create a database of users for your mobile & web applications

• Directory Services: integrate Microsoft Active Directory in AWS

• AWS IAM Identity Center: one login for multiple AWS accounts & applications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly