Book Image

AWS for Solutions Architects

By : Alberto Artasanchez
3 (1)
Book Image

AWS for Solutions Architects

3 (1)
By: Alberto Artasanchez

Overview of this book

One of the most popular cloud platforms in the world, Amazon Web Services (AWS) offers hundreds of services with thousands of features to help you build scalable cloud solutions; however, it can be overwhelming to navigate the vast number of services and decide which ones best suit your requirements. Whether you are an application architect, enterprise architect, developer, or operations engineer, this book will take you through AWS architectural patterns and guide you in selecting the most appropriate services for your projects. AWS for Solutions Architects is a comprehensive guide that covers the essential concepts that you need to know for designing well-architected AWS solutions that solve the challenges organizations face daily. You'll get to grips with AWS architectural principles and patterns by implementing best practices and recommended techniques for real-world use cases. The book will show you how to enhance operational efficiency, security, reliability, performance, and cost-effectiveness using real-world examples. By the end of this AWS book, you'll have gained a clear understanding of how to design AWS architectures using the most appropriate services to meet your organization's technological and business requirements.
Table of Contents (20 chapters)
1
Section 1: Exploring AWS
4
Section 2: AWS Service Offerings and Use Cases
11
Section 3: Applying Architectural Patterns and Reference Architectures
17
Section 4: Hands-On Labs

Managing resources, permissions, and identities using IAM

To understand AWS IAM, we must first understand how authentication and identity management works. Users, groups, roles, permissions, and policies are fundamental concepts that need to be fully understood in order to grasp how resources are secured using AWS IAM. In the following sections, we'll define those terms.

Users

An IAM user is an individual that needs to access, interact with, and potentially modify data and AWS resources. Users can interact in one of three ways:

  • AWS console
  • The AWS Command-line Interface (CLI)
  • AWS APIs

Other than the root user, when a new user is set up, no implicit permissions or credentials are given, and that new user will not be able to access any resources until permission is explicitly assigned.

Groups

An IAM group, put simply, is a collection of users. Putting users into groups facilitates permission management. Having users combined into groups gives...