In the previous post, we explored S3 Access Control Lists (ACLs) and learned why AWS recommends disabling them for most modern use cases. Now it's time to dive into the proper way of securing your S3 buckets: IAM policies and bucket policies. Unlike ACLs, which are considered legacy and can become operationally …
Read MoreRecently you were able to read. about S3 security, and methods of avoiding common misconfiguration with the usage of standard and well-known tools. The fact that AWS offers a set of access control mechanisms designed to protect S3 resources, including: Access Control Lists (ACLs) Identity and Access Management (IAM) …
Read MoreIn September this year, I will officially mark 10 years in the IT box. For most of my professional life, I was focused on system administration, automation, DevOps, and a bit of public/hybrid cloud. There was always security, but rather a nice-to-have topic, not the main pillar. Some time ago I decided, that I would …
Read More