Note_Tech

All technological notes.


Project maintained by simonangel-fong Hosted on GitHub Pages — Theme by mattgraham

AWS - Identity

Back


Zero Trust Model


Zero Trust on AWS

IAM


Intelligent Zero Trust on AWS: with Third Party.

3rd


Identity Providers(IdPs)


Technologies

Directory Service

Directory Service


Single-Sign-On (SSO)


LDAP


Multi-Factor-Authenication

mfa


Security Keys - u2f security key

security_keys


Principle of Least Privilege (PoLP)


AWS IAM


IAM Policy

policy


AWS Account Root User


AWS IAM Identity Center - SSO

sso


Access Keys

access key

access key

create access key


IAM Security Tools


IAM Access Analyzer - Access outside, Zone of Trust


IAM Guidelines & Best Practices


Shared Responsibility Model for IAM


AWS Directory Services - Microsoft AD, on-premise


AWS IAM Identity Center - SSO


AWS STS (SecurityToken Service) - temporary, limited-privileges credentials


Amazon Cognito (simplified) - app user, db


IAM – Summary


TOP