Security
Filed under
4 posts
Agent-Auth auf AWS: OIDC rein, Access Keys raus
Agents auf AWS ohne Langzeit-Keys: wie OIDC-Föderation, IRSA, Roles Anywhere und AgentCore Identity signierte Nachweise in temporäre Credentials tauschen.
Cloud prüft Cloud: M365 Security Posture Scanning 101
Dein Microsoft 365 Tenant ist Cloud-Infrastruktur und driftet. Ein 101 zu Posture Scanning mit CIS, EIDSCA und CISA ScuBA, und warum der Scanner auch SaaS ist.
AWS Multi-party Approval für Organizations
Multi-party approval in AWS Organizations sperrt risikoreiche Operationen hinter ein Quorum menschlicher Freigaben. So funktioniert es und das bringt es.
Warum dein SSH uber Quantencomputer schreit (und wie man es behebt)
OpenSSH warnt jetzt, wenn der Key Exchange nicht post-quantum ist. Was store now, decrypt later wirklich bedroht und welche Kex-Konfiguration die Warnung löst.