Help us improve the AWS re:Post Knowledge Center by sharing your feedback in a brief survey. Your input can influence how we create and update our content to better support your AWS journey.
Security, Identity, & Compliance
Securely run your business with the most flexible and secure cloud computing environment available. Benefit from AWS data centers and a network architected to protect your information, applications, and devices. Meet core security requirements, such as data locality, protection, and confidentiality with our comprehensive services and features.
Recent questions
see all1 / 18
- I receive the following error when adding a group to the Kiro subscription: “A Kiro subscription could not be created for 1 group. An error occurred while attempting to create Kiro subscriptions.” H...
- Phone number verification We will now send a 6-digit code to your phone (ending in 2009) associated with your account. Choose text or voice call, then enter your code below. SMS Message Sent We're att...
- Hi everyone, I’m designing a system in AWS where I need to manage around 10,000 users, each with a crypto wallet key pair (public + private key) that must be stored securely. What would be the best ...
- We are testing GuardDuty EC2 realtime/malware protection, and so far, test scenarioss like eicar and c2 endpoint are all returning findings as expected - with the scans/snapshots working fine. We ha...
- I have an existing Amazon MSK cluster that was created using the AWS managed KMS key for encryption at rest. I now have a requirement to use a customer-managed KMS key (CMK) instead. Questions: Ca...
-  I am trying to build a dashboard within Quick Suite using cross function datasets. I seem to be the only one withi...
- I am running a Docusaurus (React client-side rendering) site on Amplify, using Amplify Auth to require user login through a Cognito user pool. But I want a crawler (Algolia) to be able to access the p...
- Hello, We've had NFW up and running in our environment for over a year, and 5 days ago we suddenly started seeing revocation status UNKNOWN (previously OK) for all outbound requests, related to certi...
- I have an existing Amazon MSK cluster that was created using the AWS managed KMS key (aws/kafka) for encryption at rest. I now have a requirement to use a customer-managed KMS key (CMK) instead. I re...
- I have read and implemented [this](https://docs.aws.amazon.com/iot/latest/developerguide/authorizing-direct-aws.html) and [this](https://docs.aws.amazon.com/iot/latest/developerguide/authorizing-direc...
- Hello, this is Mayuko. I'd like to ask about best practices around **first-time users who sign up via Google SSO** in Cognito. We use Amazon Cognito User Pools with Google IdP. When a user signs in ...
- Hello, this is Mayuko. This is my first post. I'd like to ask about Cognito behavior with Google-native users. We use Amazon Cognito User Pools with Google IdP. Users fall into two patterns: 1. **Cr...
- Hi Team, I want to analyze the kms usage cost per service. I am using redshift, s3, dms and to access these services i am using customer managed kms key. How i can get the kms cost associated with ...
- I’m using Amazon Inspector for ECR container image scanning. After moving one of our services to a Docker Hardened Image (DHI) base image, Inspector no longer scans the image. We are migrating as much...
- I am trying to create a KMS Key to encrypt an S3 bucket where the principals that need to decrypt are in other AWS accounts. When I try to add the below part of the policy, ``` { "Sid": "Allow ...
- [https://ap-southeast-7.console.aws.amazon.com](ap-southeast-7.console.aws.amazon.com)
- ap-southeast-7.console.aws.amazon.com
- I cant get my sms code for MFA aunthentification after re-signing in and confirmed via email
Recent Knowledge Center content
see all1 / 18
Recent articles
see all1 / 18
- Ram PatelEXPERTpublished 11 days ago4 votes173 viewsThis comprehensive guide will help to validate LZA configuration files locally. One of the significant pain points for users of LZA is the waiting time for the pipeline to run. This solution lets user...
- AWS OFFICIALUpdated a month ago0 votes147 viewsThis article explores how Enterprise Support worked with the customer to design and implement an enterprise-grade SMS messaging solution that supports multiple business units. It also covers strategie...
- AWS OFFICIALUpdated a month ago2 votes308 viewsLearn how to integrate Dynatrace with AWS Incident Detection and Response to automate incident response and create context-rich support cases that expedite issue resolution.
- Ramu VaranasiEXPERTpublished 2 months ago0 votes305 viewsWhen using Amazon Bedrock with inference profiles in an AWS environment restricted by Control Tower, you may encounter challenges accessing required regions. This article explains how to maintain secu...
- AWS OFFICIALUpdated 2 months ago1 votes184 viewsThis article shows you how to set up security contacts for your standalone accounts, AWS Organizations, and AWS Partners accounts. It also explains best practices for maintaining effective security no...
- AWS OFFICIALUpdated 2 months ago1 votes265 viewsThis article tells you guidelines and best practices to follow when implementing port scanning workloads in your AWS environment.
- Purnaresa YEXPERTpublished 2 months ago0 votes128 viewsA practical guide to implementing external access analysis using CloudFormation StackSets
- Heechan LeeEXPERTpublished 2 months ago1 votes378 viewsThis guide provides step-by-step instructions for configuring SAML-based Single Sign-On between AWS SageMaker Unified Studio and Microsoft Entra ID, enabling users to access SMUS seamlessly using thei...
- AvinashEXPERTpublished 2 months ago1 votes160 viewsPurpose of this article is to offer general guidance on how to troubleshoot issues related to deployment of CrowdStrike Falcon Next-Gen SIEM for AWS through AWS Marketplace. It summarizes common issue...
- Heechan LeeEXPERTpublished 3 months ago0 votes87 viewsThis guide helps diagnose and resolve the "Email not specified" error that occurs during SAML authentication setup for Amazon SageMaker Unified Studio
- Joanna KEXPERTpublished 3 months ago0 votes139 viewsHighlight that WAF on these regional endpoints has visibility of CloudFront viewer IP in the client IP and not just the X-Forwarded-For header
- Heechan LeeEXPERTpublished 3 months ago0 votes214 viewsThis guide provides step-by-step instructions for configuring SAML-based single sign-on (SSO) between Keycloak as an identity provider and Sagemaker Unified Studio
- SubuEXPERTpublished 3 months ago0 votes260 viewsIf a user access key is acquired by a bad actor, we can use this standard operating procedure to safely make the lost access key ineffective
- Purnaresa YEXPERTpublished 3 months ago0 votes566 viewsPrevent credential misuse by restricting IAM User access to approved enterprise networks using Service Control Policies.
- NaveenEXPERTpublished 3 months ago0 votes292 viewsManaging database compliance across multiple AWS accounts is time-consuming and error-prone. This article shows you how to use AWS Config Organization Conformance Packs to automate compliance monitori...
- N_AgarwalEXPERTpublished 3 months ago1 votes617 viewsGoogle Chrome’s deprecation of public TLS certificates with clientAuth Extended Key Usage (EKU), effective April 13, 2026, impacts AWS Certificate Manager (ACM) users importing non-AWS CA certificates...
- AWS OFFICIALUpdated 3 months ago0 votes223 viewsThis article shows how organizations can use AWS Support to accelerate Australian Prudential Regulation Authority (APRA) compliance coverage.
- Hao SuEXPERTpublished 3 months ago0 votes151 viewsThe Default CloudWatch AWS namespace for Cognito does not currently support UserPool ID or App Client ID granularity
Recent selections
see all1 / 10
- AWS OfficialMODERATORpublished 4 months ago1 votes239 viewsThis spotlight on Amazon Cognito equips you with the skills and troubleshooting best practices to get the most out of this cost effective service.
- AWS OfficialEXPERTpublished a year ago0 votes940 viewsThis spotlight on IAM equips you with the skills and troubleshooting tips to get the most out of a powerful service.
- AWS OFFICIALUpdated 4 days ago9 votes26.5K viewsThe AWS Trust & Safety Center provides curated knowledge of AWS resources that can assist you in your cloud journey.
- Osvaldo MarteEXPERTpublished 2 years ago2 votes18.6K viewsThis selection focuses on the essential AWS networking services, providing a comprehensive overview of tools and technologies available to build and manage secure, scalable, and high-performing networ...
- Antonio LagrotteriaEXPERTpublished 2 years ago4 votes28.1K viewsA selection of architectural patterns and tips to leverage secure cross-account APIs, showing ingress, egress and inspection reference architectures
- Jonathan_DEXPERTpublished 2 years ago4 votes12K viewsDo you have critical workloads running in AWS? Review these handpicked resources to find ways to ensure your applications are resilient to failures.
- AWS OFFICIALUpdated 2 years ago0 votes73 viewsThis selection includes content and solutions supporting FSI related compliance and requirements covering security, immutable storage, and general guidance.
- AWS OFFICIALUpdated 2 years ago0 votes108 viewsAs a best practice, AWS recommends that you use AWS Identity and Access Management (IAM) roles instead of IAM users with long-term credentials such as access keys.
- AWS OFFICIALUpdated 2 years ago0 votes24 viewsAccelerate your business transformation goals with a managed service that combines compute, network and storage capabilities in a fully supported, ready-to-run service from VMware and AWS.
- AWS OFFICIALUpdated 2 years ago0 votes8K viewsAre you getting 403 Access Denied errors with your Amazon Simple Storage Service (Amazon S3) operations? Review this list of handpicked resources to identify the root cause and troubleshooting instruc...
1 / 18
Riku_Kobayashi
EXPERTGary Mclean
EXPERTsecondabhi_aws
EXPERTOleksii Bebych
EXPERTGreg
EXPERTKidd Ip
EXPERTOsvaldo Marte
EXPERTSedat SALMAN
EXPERTBehrens, Isaac
EXPERTAdeleke Adebowale .J.
EXPERTTushar Jagdale
EXPERTMatt Barbieri
EXPERTAWS-User-alantam
EXPERTIndranil Banerjee AWS
EXPERTTakahito Iwasa
EXPERTMassimilianoAWS
EXPERTGK
EXPERT
Learn AWS faster by following popular topics
1 / 4
