From the course: AWS Administration: Security Fundamentals

Unlock this course with a free trial

Join today to access over 25,600 courses taught by industry experts.

AWS credentials

AWS credentials

- [Instructor] When we take a look at the authentication and the authorization that is carried out at AWS to access to resources, it's relying on the identification of who's making the request. It's relying on the credentials of the person, the entity that is making the request. They're not fooling around with security at AWS. There's no initial amount of access granted. Initially, all requests are implicitly denied. Next, the policies attached to the IAM user account are evaluated. What is this entity asking to do? Let's say I'm accessing or requesting the access to an S3 bucket. The S3 bucket is called production. Is there something in this policy for that production S3 bucket? Is there an explicit denial for access to this production S3 bucket? If so, it's denied. Is there an explicit allow to the S3 bucket? If so, it's allowed. If there's no explicit allow or deny permission found in the policy, attached to the…

Contents