Module 3: IAM Roles Assignment
SUBMITTED BY :-HITESH CHAUHAN
COURSES OFFERED:ADVANCED CLOUD COMPUTING AND DEVELOPS
Problem Statement:
You work for XYZ Corporation. To maintain the security of the AWS
account and the resources you have been asked to implement a
solution that can help easily recognize and monitor the different
users..
Tasks To Be Performed:
[Link] a role which only lets user1 and user2 from task 1 to have
complete access to VPCs and DynamoDB.
This is VPC Role And DynamoDB Role Full Access.
We can create custom trust policy
Then we go Add A principal
Now we need to specify the user through IAM users
So we have selected IAM Users and ARN we need to require for the
below [Link] can check and confirm ARN for specific user
Go IAM>Users>Test1
Below Screenshot ARN (This is the ARN of Test2 User)
Note:-ARN is unique for All IAM [Link] can check ARN Look like
this.
So we need to specify the role to Test1 And Test2 Users Then Click
Add Principal
Then Go IAM Users and Copy This url
[Link]
Login the with urls with Test1 User And Password
After Login the Urls you need to fill this below information like
Account ID Or Account Alias Name
My Account Alias Name is hiteshchauhancompany then
IAM User will be test1 and login with current password.
2. Login into user1 and shift to the role to test out the feature.
We have assigned role of test1 user is Complete DynamoDB Access
And vpc
Go to search the VPC
You will see vpc dashboard but I want access ec2 instance for
checking it is role proper work or [Link] is working properly ec2
instance is not allow to create the permission