Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Summary

Summary Key to IAM services

Rating
-
Sold
-
Pages
2
Uploaded on
06-07-2023
Written in
2022/2023

IAM systems allow companies to assign a single digital identity and set access privileges for each user. That way, only authorized users can handle company resources, and they can only use those resources in ways the company permits.

Show more Read less
Institution
Course

Content preview

If you’re new to AWS, chances are your experience goes something like this:

Create a new AWS account

Log into the AWS console as the root user

Build and test things, everything works fine

Deploy an app or feature, everything falls apart

We’ll explain AWS Identity and Access Management (IAM) in an easy-to-understand way. IAM is a servic
e used to securely control access to AWS resources. It controls authentication (who) and authorization (w
hat they can do).

There are four main concepts in IAM: users, groups, roles, and policies. Let’s go through each one step b
y step in the AWS console.

Users
In the IAM console, click on "Users" and add users like "Michael Scott" and "Dwight Schrute". Specify thei
r access type (programmatic or console) and set passwords. You can also add tags to organize users.

Groups
In the IAM console, click on "Groups" and create groups like "Developers", "Testers", and "Admins". Add
users to these groups.

Roles
In the IAM console, click on "Roles" to create roles with specific permissions. Roles are similar to users, b
ut they don’t have credentials. They can be assumed temporarily by trusted entities.

Policies
A policy specifies who can do what to which resources and when. You can create policies for various use
cases and attach them to users, groups, or roles.

By attaching policies to users and groups, you control their permissions to access AWS resources.

Everything basically and there we go now backing up to roles since we hadn’t really talked about policies
previously. I didn’t want to get into roles too much, but let me just show you how to quickly create a role.

So, I have some roles in here from other work that I’ve done. You might not have any on your side, that’s f
ine. But you can always create a role. The common use case here is that we have a team at the company
that does ecommerce, and their EC2 instances need the ability to access CloudWatch and S3.
So, we’re going to create a role for those instances to assume at startup time.

Common use cases for roles are EC2. And then, down here, next permissions, we’ll attach policies similar
to what we just did with the users and groups. This one will be CloudWatch. And there should be one for
CloudWatch Logs full access.

Then, the other one, let’s say these instances are going to need S3 access, but we can get by with read-o
nly. This one right here, I’ll select that. Next, tags. Again, we’re going to skip this, but it’s a good way to ke
ep things organized. And on the review screen, this is where you’re going to give your role a name.
So, maybe this is "ecommerce service role". We’ll create the role. And now, when we go to start up a new
EC2 instance, it can assume this role, which is going to let its applications access S3 and the CloudWatc
h logs without needing to worry about credentials when the application is running.

Alright, we’ve covered quite a bit. So, let’s summarize here. We talked about users and groups. Users are

Written for

Course

Document information

Uploaded on
July 6, 2023
Number of pages
2
Written in
2022/2023
Type
SUMMARY

Subjects

$4.89
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller
Seller avatar
arunkumaran

Get to know the seller

Seller avatar
arunkumaran Published
Follow You need to be logged in order to follow users or courses
Sold
-
Member since
2 year
Number of followers
0
Documents
2
Last sold
-

0.0

0 reviews

5
0
4
0
3
0
2
0
1
0

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions