CFN Updates · @cfnupdates
76 followers · 258 posts · Server awscommunity.social

New AWS::IAM::UserPolicy

Use the AWS::IAM::UserPolicy resource to specify an inline policy document that is embedded in the IAM user.
docs.aws.amazon.com/AWSCloudFo

#IAM #Cloudformation

Last updated 1 year ago

CFN Updates · @cfnupdates
76 followers · 257 posts · Server awscommunity.social

New AWS::IAM::RolePolicy

Use the AWS::IAM::RolePolicy resource to specify an inline policy document that is embedded in the IAM role.
docs.aws.amazon.com/AWSCloudFo

#IAM #Cloudformation

Last updated 1 year ago

CFN Updates · @cfnupdates
76 followers · 256 posts · Server awscommunity.social

New AWS::IAM::GroupPolicy

Use the AWS::IAM::GroupPolicy resource to specify an inline policy document that is embedded in the IAM group.
docs.aws.amazon.com/AWSCloudFo

#IAM #Cloudformation

Last updated 1 year ago

André Koot 🐧 · @meneer
794 followers · 1584 posts · Server mastodon.myfed.space

@thijs BYOD. As an organization don't build your security on physical security, or client security. Not even on network security. Security needs only to be based on logical access control, making it scalable. Provided that you can restrict access to browser-based functionality ;-)

In fact, our company is ISO27K compliant with most Ch11 and Ch13 controls not applicable ...
:)

#IAM

Last updated 1 year ago

Mark Wolfe · @wolfeidau
101 followers · 105 posts · Server awscommunity.social

I wonder if anyone else out there has considered using Amazon Cognito for basic AWS console access? Given the lack of APIs, and complexity of AWS SSO.

May be worth it, especially with the new WAF integration, and more flexibility for authentication?

#aws #IAM

Last updated 1 year ago

Mast0b1t · @mastobit
275 followers · 5422 posts · Server awscommunity.social

Okay. Ordinarily, I do not rant. However, this time …

Cᴀɴ ꜱᴏᴍᴇᴏɴᴇ(ꜱ) ᴀᴛ ꜰɪx ᴛʜe ?!?

At some junctures, instructions do not match the . At others, the instructions become momentarily vague, i.e., adding users within a Identity Center without differentiating prior user dependencies or not, thereby breaking the lab continuation.

wellarchitectedlabs.com

github.com/awslabs/aws-well-ar

#aws #ᴏᴜᴛᴅᴀᴛᴇᴅ #ꜰʀᴇᴇ #ʟᴀʙꜱ #awsconsole #IAM #github #education #practice

Last updated 1 year ago

André Koot 🐧 · @meneer
789 followers · 1324 posts · Server mastodon.myfed.space

At one of my all time heroes, Mike Jones from gave a wonderful presentation about the developments in digital from around 2005 onwards. His slidedeck is now available from hos website at self-issued.info/?p=2345

#eic2023 #IAM #microsoft #identity #IDPro #digitalidentity

Last updated 1 year ago

André Koot 🐧 · @meneer
784 followers · 1273 posts · Server mastodon.myfed.space

Passkeys gets more traction for Passwordless Authentication by a major Google upgrade

esecurityplanet.com/applicatio

#digitalidentity #authentication #infosec #IAM #IDPro

Last updated 1 year ago

Florence Chabanois (elle/iel) · @fchabanois
183 followers · 1152 posts · Server piaille.fr

RT @Scaleway
(Identity Access Management) was live for 8 months at Scaleway without you realizing it! Check out this article from Olivier Cano, where he'll explain the history of IAM at Scaleway & our database implementations 👉 ow.ly/m93K50NW9qq

#IAM

Last updated 1 year ago

Jennine Townsend · @jt7d
89 followers · 59 posts · Server awscommunity.social

In this new multiple-MFA world, do recommend against giving users iam:DeleteVirtualMFADevice under any circumstance? The sample policies such as docs.aws.amazon.com/IAM/latest don't include it, even with a Condition requiring (a different, since the targeted MFA would have to be deactivated before deleting) MFA.

#aws #IAM

Last updated 1 year ago

Soenke Ruempler · @s0enke
458 followers · 226 posts · Server awscommunity.social

Remember how CaptialOne got hacked? Combination of insider info, SSRF, and no native way to prevent IAM creds vended on an EC2 instance from being used outside of it (krebsonsecurity.com/2019/08/wh).

And, four years later, here it comes: A native IAM way to prevent EC2 instance credentials exfiltration → aws.amazon.com/blogs/security/

Now, please for Lambda and ECS/Fargate, too!

#aws #IAM #security

Last updated 1 year ago

Netzpalaver · @netzpalaver
8 followers · 40 posts · Server social.dev-wiki.de
André Koot 🐧 · @meneer
757 followers · 1161 posts · Server mastodon.myfed.space

Today we posted a blog about and / . There are some challenges in managing authorizations in non-hierarchical environments. We are working on solving some of these issues, but we're not done yet. Anyway, enjoy the read!

sonicbee.nl/en/working-holocra

#holacracy #IAM #rbac #IDPro #digitalidentity #infosec

Last updated 2 years ago

André Koot 🐧 · @meneer
757 followers · 1161 posts · Server mastodon.myfed.space

Today we posted a blog about and / . There are some challenges in managing authorizations in non-hierarchical environments. We are working on solving some of these issues, but we're not done yet. Anyway, enjoy the read!

sonicbee.nl/en/working-holocra

#holacracy #IAM #rbac #IDPro #digitalidentity

Last updated 2 years ago

André Koot 🐧 · @meneer
744 followers · 1076 posts · Server mastodon.myfed.space

I wrote a blog post about the new directive of the . The topic of (Identity and Access management) is not explicitly mentioned and I feel that this topic just needs a little extra attention

sonicbee.nl/en/nis2-needs-iam-

#NIS2 #cybersecurity #eu #IAM #digitalidentity #IDPro #infosec

Last updated 2 years ago

André Koot 🐧 · @meneer
744 followers · 1076 posts · Server mastodon.myfed.space

I write a blog post about the new directive of the . The topic of (Identity and Access management) is not explicitly mentioned and I feel that this topic just needs a little extra attention

sonicbee.nl/en/nis2-needs-iam-

#NIS2 #cybersecurity #eu #IAM #digitalidentity #IDPro #infosec

Last updated 2 years ago

Bertrand 🚴 🏊 🎸 · @bertrand
125 followers · 514 posts · Server piaille.fr

@kurtsh yes I'm quite worried / suspicious about the future of three recently acquired vendors...

#IAM

Last updated 2 years ago

André Koot ❎️ · @meneer
642 followers · 632 posts · Server mastodon.myfed.space

Half past 7, December 1st, delivery of the 2 Years of SonicBee.nl celebration cake 🥰
consultancy

#IAM

Last updated 2 years ago

Joe Shenouda · @shenouda
82 followers · 95 posts · Server cybersecurity.masto.host

Every SaaS app user and login is a potential threat; whether it’s bad actors or potential disgruntled former associates, identity management and access control are crucial to prevent unwanted or mistaken entrances to the organization’s data and systems. Read more: cybersec.adaptive-shield.com/s

#IAM

Last updated 2 years ago

Bertrand 💡 · @bertrand
96 followers · 301 posts · Server piaille.fr

@jerry Hi Jerry, I felt so welcomed by you and the other old-timers. Thank you. Thank you so much.
I identify myself as an (as in ) person, considering as a side/tangent community I can't ignore but I don't identify directly in it.
Except for when I read your post. When I read your post I feel welcome in this community and I want to be part of it.
Thank you.

#fediverse #identity #IAM #InfoSec

Last updated 2 years ago