From the course: AWS Certified Solutions Architect - Professional (SAP-C02) Cert Prep
Unlock this course with a free trial
Join today to access over 24,900 courses taught by industry experts.
Security control scenario, part 2 - Amazon Web Services (AWS) Tutorial
From the course: AWS Certified Solutions Architect - Professional (SAP-C02) Cert Prep
Security control scenario, part 2
- Now that we've discussed some of the different choices that we can make regarding federation in AWS, let's take a look at some implementation patterns that we can use to try and meet our requirements. In this first implementation pattern, we're going to identify our first identity provider, and we're going to go ahead and federate that individually with the AWS accounts that require it. Then we identify our second identity provider and we go ahead and configure that too with its accounts, also using the single federation option. Now, what are our considerations of this solution? Now, first off, it's very flexible. We can configure the identity provider with any single account. It does mean that we have to do the work of federation for every account individually, and so that's going to require us to create IAM roles in every single account separately. And from a scalability perspective, this is going to be a little bit complicated to manage over time, especially if we end up with a…
Contents
-
-
-
-
(Locked)
Module 2: Design Solutions for Organizational Complexity introduction39s
-
(Locked)
Learning objectives33s
-
(Locked)
Network connectivity scenario, part 15m 19s
-
(Locked)
Network connectivity scenario, part 24m 2s
-
(Locked)
Network connectivity scenario question breakdown4m 41s
-
(Locked)
Security control scenario, part 13m 43s
-
(Locked)
Security control scenario, part 23m 52s
-
(Locked)
Security control scenario question breakdown3m 46s
-
(Locked)
-
-
-
-
-
-
-
-