Soru

Zorluk: KolayIdentity and Access Management (IAM)

Which of the following AWS Identity and Access Management (IAM) components is specifically designed to provide temporary security credentials for AWS services or federated users?

  1. IAM roleCevap
  2. B
    IAM user
  3. C
    IAM group
  4. D
    AWS Account Root User

Cevap

IAM role
The correct answer is the option specifying an IAM role. An IAM role is an identity that you can create in your account that has specific permissions. It is not associated with a specific user or group, and when assumed, AWS Security Token Service (STS) dynamically generates temporary security credentials that expire after a set duration.

Adım Adım Çözüm

1
Identify the primary requirement in the question stem, which is the need for temporary security credentials for AWS services or federated users.
Temporary security credentials are required.
This narrows down the potential IAM entities to those that do not use permanent or long-term keys.
2
Evaluate the credentials associated with each IAM entity: IAM users, groups, roles, and the root user.
IAM users, groups, and root users use or manage long-term credentials, whereas IAM roles use security tokens for temporary access.
To choose the correct identity type, we must distinguish between permanent and temporary credential mechanisms in AWS.
3
Select the entity that can be assumed to obtain temporary credentials.
IAM role is selected as the correct answer.
An IAM role provides temporary security credentials when assumed by a service or external identity.

Anahtar Kavram

Temporary security credentials via IAM Roles
Tahmini Süre:45s
Bu soruyu puanla