Please enable JavaScript.
Coggle requires JavaScript to display documents.
AWS security - Coggle Diagram
AWS security
cloudHSM
dedicated security module
FIPS 140-2 level 3
manage your own keys
no access to AWS -managed component
industry standard API's
irretrivable once lost
dedicated VPC
KMS
manages customer keys
types
customer managed
AWS managed CMK
AWS owned CMK
regional secure key managment, encryption and decryption
pay per API calls
cloudtrail audit logs
FIPS 140-2 level 2
security standard
security threats
WAF
security at layer 7
WAF + cloud front
NACL
security at layer 4
parameter store
component of AWS (SSM)
stores passwords, keys ,licence codes,api's
values ecrypted using kms or plain text