IAM Flashcards

1
Q

What’s the most important thing you can do to secure the root account?

A

Enable MFA

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

TRUE or FALSE?
Users, groups, and policies are global.

A

TRUE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

[for IAM] users should be grouped into groups based on ___ _______.

A

job function (i.e. whatever job functions you have within the organisation you should create a group for it.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

It’s best practice for users to:
a) be assigned permissions directly
b) to inherit permissions from groups

A

b) to inherit permissions from groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Why is it best practice for users to inherit permissions from groups?

A

It’s easier to manage.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

When is the root account created?

A

When you first set up your AWS account

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which permissions do users have by default when they are first created?

A

None

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are Access Key IDs and Secret Access Keys used for?

A

for programmatic access to the AWS console

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

TRUE or FALSE?
You can view the Access Key ID and Secret Access Keys at any time via the console.

A

FALSE: You only get to view them once. If you lose them you need to regenerate them. Save them in a secure location.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

To give users in a group appropriate permissions, do you attach
a) a policy
b) a role
to the group?

A

a) a policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly