Please enable JavaScript.
Coggle requires JavaScript to display documents.
AWS IAM - Coggle Diagram
AWS IAM
Identities
An identity in IAM is anything you can attach a policy to, something that represents a user or service that can make requests to AWS.
Examples of identities:
-
-
-
Federated user (SSO, Cognito, etc.)
-
-
-
Role
An IAM role is an identity (just like a user) that has a set of permissions, but NO permanent credentials.
Instead of belonging to a specific person or service, a role is meant to be assumed — like putting on a temporary hat that gives you specific powers. 🎩
-
While wearing it, they inherit its permissions.
When they take it off (session ends), the permissions go away.
-