Statements (140)
Predicate | Object |
---|---|
gptkbp:instance_of |
gptkb:Identity_and_Access_Management
|
gptkbp:allows |
cross-account access
resource tagging resource-based policies role-based access control group management API access control custom roles session policies custom policies Management of user access service-linked roles Service-specific permissions API Gateway access control AWS App Mesh access control AWS Backup access control AWS Batch permissions management AWS Budgets access control AWS Cloud Watch permissions management AWS Code Deploy access control AWS Control Tower permissions management AWS Elastic Load Balancing permissions management AWS Io T permissions management AWS Resource Groups permissions management AWS Snowball permissions management AWS Step Functions access control data encryption access control AWS WAF access control |
gptkbp:can_be_used_for |
API access
|
gptkbp:can_be_used_to |
Control access to AWS resources
|
gptkbp:can_be_used_with |
gptkb:Amazon_RDS
gptkb:Amazon_Dynamo_DB gptkb:Amazon_S3 gptkb:AWS_Lambda gptkb:Amazon_EC2 |
gptkbp:controls |
Permissions
Groups Roles Users |
gptkbp:developed_by |
gptkb:Amazon_Web_Services
|
gptkbp:enables |
audit logging
Role-based access control Resource-based policies fine-grained permissions |
https://www.w3.org/2000/01/rdf-schema#label |
AWS IAM
|
gptkbp:integrates_with |
AWS services
|
gptkbp:is_a_key_component_of |
AWS security architecture
|
gptkbp:is_accessible_by |
gptkb:AWS_SDKs
gptkb:AWS_Management_Console gptkb:AWS_CLI |
gptkbp:is_available_in |
Multiple AWS regions
|
gptkbp:is_critical_for |
Data protection in AWS
|
gptkbp:is_documented_in |
AWS documentation
|
gptkbp:is_essential_for |
Compliance with security standards
|
gptkbp:is_integrated_with |
gptkb:AWS_Marketplace
Third-party identity providers |
gptkbp:is_managed_by |
AWS account administrators
|
gptkbp:is_monitored_by |
gptkb:AWS_Cloud_Formation
|
gptkbp:is_part_of |
gptkb:AWS_Security
AWS Cloud Security AWS ecosystem |
gptkbp:is_supported_by |
AWS support team
|
gptkbp:is_updated_by |
Regularly by AWS
|
gptkbp:is_used_by |
gptkb:developers
Security professionals System administrators |
gptkbp:is_used_for |
Access control in cloud environments
|
gptkbp:provides |
user authentication
Access keys identity federation identity management identity verification policy management security best practices service control policies user authorization Fine-grained access control Temporary security credentials Audit capabilities Identity federation user activity monitoring resource policies identity policies AWS Cloud9 permissions management AWS Cost Explorer permissions management AWS Data Sync access control AWS Direct Connect access control AWS Elastic Beanstalk access control AWS Glue permissions management AWS License Manager permissions management AWS Marketplace access control AWS Service Catalog permissions management AWS Systems Manager access control AWS Tag Editor access control AWS Well-Architected Tool access control access keys management console access management credential reports identity policies management service permissions management |
gptkbp:requires |
AWS resource management
|
gptkbp:supports |
gptkb:AWS_Cloud_Formation
gptkb:AWS_Shield gptkb:AWS_SDKs gptkb:AWS_Single_Sign-On gptkb:AWS_Management_Console gptkb:AWS_CLI gptkb:Open_ID_Connect gptkb:AWS_Organizations gptkb:SAML_2.0 gptkb:AWS_Cloud_Trail gptkb:AWS_Secrets_Manager Multi-factor authentication multi-factor authentication temporary security credentials permissions boundaries Custom policies AWS Organizations management Cloud Trail logging AWS Personal Health Dashboard permissions management AWS App Sync permissions management AWS Code Build permissions management AWS Code Pipeline access control AWS Config Rules access control AWS Cost and Usage Report access control AWS Data Pipeline access control AWS Global Accelerator permissions management AWS Identity Store AWS Lambda permissions AWS Managed Services access control AWS Organizations service control policies AWS Outposts access control AWS Transfer Family permissions management AWS X-Ray access control |
gptkbp:uses |
gptkb:Policies
Up to a certain limit |
gptkbp:bfsParent |
gptkb:Amazon_Web_Services
gptkb:AWS gptkb:Amazon_Web_Services_(AWS) |
gptkbp:bfsLayer |
4
|