AWS re:Invent 2021 - A least privilege journey: AWS IAM policies and Access Analyzer

แชร์
ฝัง
  • เผยแพร่เมื่อ 20 ส.ค. 2024

ความคิดเห็น • 14

  • @ishmaelkrakers
    @ishmaelkrakers 2 ปีที่แล้ว +2

    Excellent presentation, well structured (it's easy to organize information into hierarchy based on agenda), putting a life cycle in the center which is a perfect way to cover the topic from the conception until decommission, make sure no related topics "fall through the cracks", practical examples and use cases, highlighting tools... It's a great tutorial on a very complex topic. I really liked it

  • @pravesho
    @pravesho 9 หลายเดือนก่อน

    I like way you presented it. So much energy in presenting. It make whole lot of difference. Thank you!

  • @aireddy
    @aireddy 2 ปีที่แล้ว

    This session is very informative, Thank you Brijid Johnson!

  • @sachinnate5294
    @sachinnate5294 ปีที่แล้ว

    Good one Brigid .. you should be doing all the presentations in AWS .. you just breeze through. For some reason, most AWS video seems to be done by bots.

  • @farshkl234
    @farshkl234 ปีที่แล้ว

    Such an amazing content! Wow 🎉 Your pro tips are amazing

  • @kellymoses8566
    @kellymoses8566 2 ปีที่แล้ว

    Access Analyzer is the kind of thing only AWS can create

  • @paradisetravel347
    @paradisetravel347 ปีที่แล้ว

    39:33 cross-account access deep dive. i am adopting pickles the horse.

  • @javiermendoza5173
    @javiermendoza5173 2 ปีที่แล้ว +1

    The good old Bandicam to record haha. Nice talk, did not know that Access Analyzer existed.
    Feedback, make it easier to run access analyzer based on cloudformation stacks. I would love to use it, but is a hassle do it one by one, guess I can do it using an script invoking to the CLI but is another layer that will make devs to desist in use it.
    Thanks and have a nice day.

  • @jianwei2009
    @jianwei2009 2 ปีที่แล้ว

    If using AWS sso, how to prevent privilege escalation for admin users?

    • @kellymoses8566
      @kellymoses8566 2 ปีที่แล้ว

      Permission boundary

    • @jianwei2009
      @jianwei2009 2 ปีที่แล้ว

      @@kellymoses8566 As of now, permission boundary is not available in AWS SSO

    • @kellymoses8566
      @kellymoses8566 2 ปีที่แล้ว

      @@jianwei2009 Lame

    • @ser1ification
      @ser1ification ปีที่แล้ว

      Service Control Policies in AWS Organizations.

    • @jaygoodwin5502
      @jaygoodwin5502 8 หลายเดือนก่อน

      @@jianwei2009 Not true. in every case I can think of they would work.