IAM Flashcards

1
Q

What is a user?

A

An entity which represents a person or service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What permissions do users get when created?

A

None

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the root account?

A

The email and password you used to create the account and it has unrestricted access to all content in the account

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the best practices for the root account?

A

Don’t use it, create a user with admin permissions and require two factor auth.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does a user consist of?

A

A user readable name and an Amazon Resource Name (ARN)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are groups?

A

A collection of users which can have multiple attached policies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Can groups be assigned to other groups?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the best practice for giving permissions to users?

A

Least privilege

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is a role?

A

Define a set of permissions for making an AWS service request. They do not require a username or password and will give temporary security credentials

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are policies?

A

Policies written in JSON and define the permissions applied to users or groups. All permissions are denied by default.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the three authentication methods?

A

Access key, IAM user and signing certificate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is an STS?

A

Security Token Service is a web service which enables you to request temporary credentials for IAM users.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly