IAM Flashcards

1
Q

What does IAM stand for?

A

Identity and Access Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What do IAM Groups contain

A

Groups only contain Users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Can Groups contain other groups?

A

No, only Users in Groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What does a Policy do?

A

It defines the permissions being given to the User

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the IAM best practice when assigning permissions?

A

Assign the least privilege

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What 3 properties does an IAM policy have?

A
  • Version
  • Id
  • Statement
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What 6 properties does an IAM policy Statement have?

A
  • Sid
  • Effect (Allow/Deny)
  • Principal (Account/User/Role the Policy applies to)
  • Action (List of Actions this policy allows/denies)
  • Resource (List of resources the actions are allowed on)
  • Condition (Conditions for when this policy takes effect)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What does MFA stand for?

A

Multi Factor Authentication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What makes up MFA?

A

A Password you know and a security device you own

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are the 4 MFA options in AWS?

A
  • Virtual MFA Device (Google Auth/Authy)
  • Universal 2nd Factor (U2F) Security Key provided by third party Yubikey
  • Hardware Key Fob MFA Device (Gemalto)
  • Hardware Key Fob for AWS GovCloud (SurePassId)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the 2 IAM Security Tools available?

A
  • IAM Credentials Report

- IAM Access Advisor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which IAM Security Tool is at the Account level?

A

IAM Credentials Report lists all your account’s users and the status of their various credentials

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Which IAM Security Tool is at the User level?

A

IAM Access Advisor shows the service permissions granted to a user and when those services were last used

How well did you know this?
1
Not at all
2
3
4
5
Perfectly