From the course: Complete Guide to AWS Security and Compliance Management
Unlock the full course today
Join today to access over 24,900 courses taught by industry experts.
Configuring IAM roles - Amazon Web Services (AWS) Tutorial
From the course: Complete Guide to AWS Security and Compliance Management
Configuring IAM roles
- [Instructor] With a solid understanding of what IAM rules are, let's get into the web console and set up a new role to allow EC2 instances to interact with S3. Here I am at the IAM Dashboard. To get started, I go ahead and click on the Roles link in the left hand nav under Access Management. This brings me to the roles configuration screen. To get started, I click the Create Role button, which takes me through the Create Role Wizard. Here I can specify the type of entity I want to trust. For instance, I can trust a native AWS service, like EC2 or Lambda. I have the option of trusting another AWS account. This is useful when operating in a multi-account environment. You also have the option of trusting a web identity, using Open ID or AWS'S Cognito service. You also have the option of federating access using SAML, which stands for Security Assertion Markup Language. Finally, you can author a custom policy if you know how to write the JSON directly. In this case, I want to trust an…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
Understanding Identity and Access Management6m 28s
-
Understanding IAM policies4m 15s
-
(Locked)
Configure IAM policies10m 11s
-
(Locked)
Understanding IAM groups1m 54s
-
(Locked)
Configure IAM groups4m 40s
-
(Locked)
Configuring a password policy4m 7s
-
(Locked)
Configure IAM users: Web console7m 49s
-
(Locked)
Configure IAM users: CLI3m 14s
-
(Locked)
IAM challenge1m
-
(Locked)
IAM challenge solution3m 36s
-
(Locked)
Configuring IAM roles3m 13s
-
(Locked)
Configuring IAM roles3m 2s
-
(Locked)
Validating an IAM role3m 45s
-
(Locked)
Extending CloudWatch3m 43s
-
(Locked)
Install CloudWatch agent7m 23s
-
(Locked)
Challenge: IAM roles54s
-
(Locked)
Solution: IAM roles4m 11s
-
(Locked)
Understanding Security Token Service1m 58s
-
(Locked)
Creating a temporary access role3m 46s
-
(Locked)
Creating a temporary access policy4m 54s
-
(Locked)
Validating temporary access3m 46s
-
(Locked)
Challenge: Super admin42s
-
(Locked)
Solution: Super admin4m 20s
-
(Locked)
Illustrating access restrictions2m 2s
-
(Locked)
Exploring IAM policy simulator7m 31s
-
(Locked)
Understanding Cognito4m 2s
-
(Locked)
Creating a Cognito user pool10m 28s
-
(Locked)
Creating a Cognito identity pool5m 31s
-
(Locked)
Understanding Verified Permissions3m 53s
-
(Locked)
Understanding federated access2m 37s
-
(Locked)
Enabling federated access5m 8s
-
(Locked)
Validating federated access3m 36s
-
(Locked)
Securing financial access3m 37s
-
(Locked)
Enabling financial access3m 40s
-
-
-
-
-
-
-
-