From the course: Certificate of Cloud Security Knowledge (CCSK) Cert Prep
Unlock this course with a free trial
Join today to access over 25,600 courses taught by industry experts.
AuthZ and AuthN in the cloud
From the course: Certificate of Cloud Security Knowledge (CCSK) Cert Prep
AuthZ and AuthN in the cloud
- [Instructor] Let's take a broader view of authorization and authentication in the cloud. The first activity related to managing users and identities in the cloud is understanding the user and identity base. For your company, it could be a combination of internal employees, customers and contractors. These personas may have different security needs that should be addressed appropriately. The cloud provider has a vast responsibility for hosting users and identities that fall under the namespace of that entity. The cloud consumer must determine which architectural model best suits its business needs. For instance, a cloud service customer could decide to create all of its identities from scratch. This may not be practical in companies with hundreds or more employees. Using federation, they may expedite user access based on existing user directories. Two architectures or proposed in the CCSK. The first is the Hub-and-Spoke model. In this case, you can choose to utilize a central broker…