Advanced Identity Flashcards
1
Q
AWS STS (Security Token Service)
A
- Create temporary, limited-privilege credentials to access AWS resources
- Short-term credentials: you configure expiration period
2
Q
AWS STS (Security Token Service) Use Casses
A
- Identity federation: manage user identities in external systems, and provide STS tokens to access AWS resources
- IAM Roles for cross/same account access
- IAM Roles for EC2: temp credentials for EC2 instances to access resources
3
Q
Amazon Cognito
A
- Identity for your Web and Mobile app users
- Use instead of IAM
4
Q
AWS IAM Identity Center
A
One login (single sign-on) for all your:
* AWS account in AWS Orgs
* Business cloud apps
* SAML2.0-enabled application
* EC2 Windows Instances