Policy Types Flashcards
1
Q
What are Identity-based policies?
A
Attached to users, groups, or roles.
2
Q
What are Resource-based policies?
A
Attached to resource & define permissions for principal accessing resource.
3
Q
What are IAM permissions boundaries?
A
Set max permissions an identity-based policy can grant IAM entity.
4
Q
What are AWS Organizations service control policies (SCP)?
A
Specify max permissions for organization or OU.
5
Q
What are Session policies?
A
Used w/ AssumeRole API actions.