Загрузка...

IAM Roles Explained — How AWS Services Talk Without Credentials

Your Lambda calls DynamoDB. Where are the credentials? There are none.
IAM Roles are the most secure way to give AWS services access to each
other — no access keys, no secrets, no rotation headaches. Just trust.
In this video:
✅ What an IAM Role actually is (and how it differs from a User)
✅ The full AssumeRole flow: Lambda → STS → temp creds → DynamoDB
✅ Trust policies vs. permission policies — both are required
✅ 4 patterns you'll use constantly: Lambda, EC2, ECS, cross-account
✅ 3 mistakes to avoid: wildcard trust, confused deputy, role reuse
⏱ Timestamps:
0:00 — No credentials in your code
0:23 — User vs. Role: permanent vs. temporary
0:51 — How AssumeRole works (STS flow)
1:25 — Trust policy vs. permission policy
2:01 — 4 real-world patterns
2:31 — 3 mistakes to avoid
3:02 — What's next: IAM Policies in depth
👉 Missed the last video? Watch "What is IAM, really?" first.
🔔 Subscribe — new AWS deep dive every week.
---
#AWS #IAMRoles #CloudSecurity #AWSIAMRoles #DevOps #Serverless #CloudComputing

Видео IAM Roles Explained — How AWS Services Talk Without Credentials канала Dixamix Learn
Яндекс.Метрика
Все заметки Новая заметка Страницу в заметки
Страницу в закладки Мои закладки
На информационно-развлекательном портале SALDA.WS применяются cookie-файлы. Нажимая кнопку Принять, вы подтверждаете свое согласие на их использование.
О CookiesНапомнить позжеПринять