Misc. Flashcards
AWS Management Console
- Lets manage and access individual AWS resources through a web-based user interface
AWS Resource Groups
- Enables you to create logical groups of resources based on factors such as tags, regions, resource types, or other criteria.
- Users can create custom groups that represent specific applications, environments (e.g., development, testing, production)
Group
composed of users where policies can be attached.
Policies
permissions granted to users
Roles
- Assumed by users
- Temporary
AWS Inspector
- An automated security assessment service
- Helps improve the security and compliance of applications
CloudFormation
- Allows you to use simple text files to model and provision
- Infrastructure as code
DMS
(Database Migration Service)
Used to migrate databases from on-premises database system into AWS
KMS
(Key Management Service)
Managed service that makes it easy to create and control the encryption keys
CloudHSM
(Hardware Security Module)
Enables you to easily generate and use your own encryption keys on the AWS Cloud
AWS Cost & Usage Report
- Lists AWS usage for each service category used by an account and its IAM users in an hourly or daily line items, any tags that have been activated for cost allocation purposes
AWS Server Migration Service (SMS)
- Agentless service
- Makes it easier and faster for you to migrate thousands of on-premises workloads to AWS
AWS Storage Gateway
- Connects on-premises software appliance with cloud-based storage
- Provides seamless integration with data security features between IT environment and AWS storage infrastructure
Amazon ElastiCache for Redis
- Fast in-memory data store that provides sub-millisecond latency to power IoT applications
Penetration Testing
The practice of testing a network or web application to find security vulnerabilities that an attacker could exploit