4 ms·
I'm being dumb. I can see that it is preferable to embed credentials for a restricted IAM acct, not your root/master AWS account. But how does using a TVM impr
by jbert 13y ago
I'm being dumb. I can see that it is preferable to embed credentials for a restricted IAM acct, not your root/master AWS account.
But how does using a TVM improve the situation? Surely you still need to embed creds which allow the app to use the TVM? In that case, an attacker can extract those creds, and ask the TVM for a time-limited token any time they like.
How does using a TVM improve security over embedding the creds of a restricted account?
- rajbala 13y agoI asked myself the same question and don't have an answer yet.
- duncans 13y agoYour token service would authenticate users using their credentials for your system.
- jbert 13y agoStill not sure how that helps. In both cases, we have creds embedded in the app which can be used (and only used) for access to the AWS resource. In one case directly (via an IAM limited account), in another via a token they can request. In both cases, the acct is limited to one specific AWS resource. In both cases, the creds can be revoked centrally. In both cases the creds are embedded in the app. Smart people who build these things (AWS) seem to think a TVM is a better solution. I don't understand why.