IAM Flashcards
1
Q
Can groups be nested?
A
No
2
Q
Policy document format
A
JSON
3
Q
Policies aka
A
Permissions
4
Q
IAM Policy:
SID
Effect
Principal
Action
Resource
A
Optional ID number
Allow or Deny access
Account/role it applies to
List of actions allowed or denied
5
Q
How can users access AWS?
A
Management console
CLI (w/ access keys)
SDK (w/ access keys)
6
Q
IAM Roles
A
Used by services to perform actions
7
Q
IAM Roles
A
Specific permissions for short durations
Assume a role
8
Q
How long do IAM roles last?
A
Temporary credentials per session
9
Q
IAM Access Advisor
A
Shows service permissions granted to a user and when services were last accessed
10
Q
IAM Credentials Report
A
Lists accounts users and status of credentials