官术网_书友最值得收藏!

AWS IAM

When you create your AWS account, you receive a root user with full access. It can create/delete and start/stop any service. That's great for learning, but you shouldn't use it when developing a real project. In information security, the principle of least privilege requires that a user or program must be able to access only the information or resources that are necessary for its legitimate purpose. In case your access keys are compromised, the damage will be reduced if the access scope is restricted.

Traceability is another important aspect. You shouldn't share your user with others. It's really important that each person has their own user. AWS offers CloudTrail as a tool to track user activity and API usage.

So, you need to learn how to create user accounts and application keys with restricted access using Identity and Access Management (IAM). As we don't have applications keys yet, we will configure security using the IAM Management Console.

主站蜘蛛池模板: 隆安县| 天水市| 铁力市| 太湖县| 始兴县| 靖西县| 绵阳市| 东方市| 克东县| 西藏| 从化市| 祁阳县| 兰西县| 上蔡县| 康定县| 阿勒泰市| 丰镇市| 南乐县| 白玉县| 东兰县| 花垣县| 东乌珠穆沁旗| 东莞市| 卫辉市| 汾阳市| 长沙市| 湘阴县| 南陵县| 鄱阳县| 南和县| 恩平市| 屏山县| 宣恩县| 三台县| 渝中区| 从化市| 隆回县| 崇阳县| 茌平县| 如东县| 昌平区|