Security & Identity Services Flashcards
1
Q
3 types of identity objects IAM lets you create are?
A
Users - identities which represent humans or apps thats need access to the account
Groups - Collections of related users
Roles - Can be used by AWS services or granting ext access to your acccount
Also consider policies (policy docs) that can be used to allow or deny access to services when attached to the above.
2
Q
3 jobs of IAM
A
Authenticate - prove who you are
Authorise - Allow or deny access to resources based on policies
Manage Identities (IDP)