AWS Identity and Access Management
E293759
AWS service
access management service
authentication and authorization service
cloud security service
AWS Identity and Access Management is a security service that enables you to securely control and fine-tune user and programmatic access to AWS resources through policies, roles, and permissions.
All labels observed (5)
| Label | Occurrences |
|---|---|
| AWS Identity and Access Management canonical | 29 |
| AWS IAM | 7 |
| AWS IAM policies | 1 |
| AWS IAM users | 1 |
| S3 Access Grants | 1 |
Statements (59)
| Predicate | Object |
|---|---|
| instanceOf |
AWS service
ⓘ
access management service ⓘ authentication and authorization service ⓘ cloud security service ⓘ |
| alsoKnownAs |
AWS Identity and Access Management
ⓘ
surface form:
AWS IAM
|
| configurationInterface |
AWS CLI
ⓘ
AWS Management Console ⓘ AWS SDKs ⓘ infrastructure as code tools ⓘ |
| hasAbbreviation | IAM ⓘ |
| integratesWith |
AWS CLI
ⓘ
AWS CloudFormation ⓘ AWS CloudTrail ⓘ AWS Management Console ⓘ AWS Organizations ⓘ AWS SDKs ⓘ AWS Security Token Service ⓘ AWS Single Sign-On (IAM Identity Center successor) ⓘ AWS Cognito ⓘ
surface form:
Amazon Cognito
|
| policyLanguage | JSON ⓘ |
| policyType |
identity-based policies
ⓘ
permissions boundaries ⓘ resource-based policies ⓘ service control policies (via AWS Organizations) ⓘ |
| primaryFunction | manage access to AWS resources ⓘ |
| providedBy | Amazon Web Services ⓘ |
| scope |
account-level access control
ⓘ
resource-level access control ⓘ |
| securityGoal | protect AWS resources from unauthorized access ⓘ |
| supports |
fine-grained access control
ⓘ
programmatic access management ⓘ user access management ⓘ |
| supportsAuthentication |
MFA-based authentication
ⓘ
federated SSO authentication ⓘ password-based authentication ⓘ |
| supportsFeature |
access advisor
ⓘ
access analyzer ⓘ conditions in policies ⓘ credential report ⓘ cross-account access ⓘ federated access ⓘ inline policies ⓘ least privilege access ⓘ managed policies ⓘ multi-factor authentication ⓘ password policy enforcement ⓘ policy versioning ⓘ role assumption ⓘ service-linked roles ⓘ tag-based access control ⓘ |
| uses |
X.509 certificates
ⓘ
access keys ⓘ federated identities ⓘ groups ⓘ permissions ⓘ policies ⓘ roles ⓘ temporary security credentials ⓘ users ⓘ |
Referenced by (39)
Full triples — surface form annotated when it differs from this entity's canonical label.
this entity surface form:
S3 Access Grants
this entity surface form:
AWS IAM
this entity surface form:
AWS IAM
this entity surface form:
AWS IAM
this entity surface form:
AWS IAM
this entity surface form:
AWS IAM
this entity surface form:
AWS IAM
this entity surface form:
AWS IAM policies
this entity surface form:
AWS IAM users
this entity surface form:
AWS IAM