IAM, ResourceAccess, Policies

- Welche Permissions gibt es?

    - https://iam.cloudonaut.io/

    - oder direkt auf https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_policies_actions-resources-contextkeys.html

Understand and use Permissions Boundaries (AWS Live re:Inforce)

How do I create an AWS IAM policy to restrict access for an IAM entity to a particular Amazon Virtual Private Cloud?

How to Automate Restricting Access to a VPC by Using AWS IAM and AWS CloudFormation

Demystifying EC2 Ressource Level Permissions

AWS Services That Work with IAM

How to Become an IAM Policy Ninja in 60 Minutes or Less


Sicherung des AWS accounts; Bsp für ReadOnlyAccess meines accounts

https://cloudonaut.io/how-to-protect-your-cloudformation-managed-aws-account-from-human-intervention/

https://cloudonaut.io/improve-aws-security-protect-your-keys-with-ease/


Cross-Accounts Access

Cross account resource access


Security

  • Principal Mapper (PMapper) is a script and library for identifying risks in the configuration of AWS Identity and Access Management (IAM) for an AWS account or an AWS organization
  • Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized HTML report