Skip to content

Articles tagged with IAM Policies

You manage access in AWS by creating policies and attaching them to IAM identities (users, groups of users, or roles) or AWS resources.

Content language: English

Filter articles
Select tags to filter
Sort by
Sort by most recent

Browse through articles or filter your results using the tools displayed.

24 results
AWS Cloud Control API uses AWS CloudFormation resource providers, which may invoke additional API operations beyond the primary service API. As a result, GetResource for an Amazon Bedrock Agent can re...
Enterprises upgrading their AWS Lake Formation cross-account sharing to Version 5 may get blocked from granting data access across accounts breaking cross-account data lake workflows. This article pro...
Amazon S3 Files requires two IAM roles for bidirectional sync. A common misconfiguration — using aws:SourceAccount instead of aws:ResourceAccount in the sync role's inline policy — causes files to sil...
AWS

published 3 months ago3 votes190 views

The article addresses a common operational challenge — when AWS Backup jobs (backup, restore, or cross-account copy) fail, the root cause typically spans multiple AWS services (IAM, KMS, Backup vault ...
A detective rule that detects non-compliant FSx filesystems within minutes and quarantines them without deleting data.
Step-by-step guide for setting up SAML 2.0 federation between Microsoft Entra ID (formerly Azure AD) and AWS IAM for single-account console access. Covers creating the enterprise application in Entra ...
Session CNS360 presented a layered security framework for serverless applications on AWS, from foundational IAM controls and API protection through OAuth 2.0 identity flows. The session also shows how...
I'm using the Apache Airflow REST API in my Amazon Managed Workflows for Apache Airflow (Amazon MWAA) version 3.0 environment, and some API endpoints work while others return a `{"detail": "Forbidden"...
This article provides general guidance on migrating Security, Identity and Compliance resources from one region to another.
AWS

SubuEXPERT

published 9 months ago0 votes527 views

If a user access key is acquired by a bad actor, we can use this standard operating procedure to safely make the lost access key ineffective
Migrating your AWS account to a new landing zone can lock you out of your Amazon EKS clusters. New SSO permission sets create different role names that break existing access. This guide helps you: -...
This article outlines steps to troubleshoot IAM permission issues when creating Amazon Bedrock Knowledge Bases with S3 Vectors storage configuration.
  • 1
  • 2
  • Page size
    12 / page