IAM
Filed under
2 posts
Agent Auth on AWS: OIDC In, Access Keys Out
Agents on AWS should never hold long-lived keys. How OIDC federation, IRSA, Roles Anywhere, and AgentCore Identity turn signed proof into temporary credentials.
AWS Multi-party Approval for Organizations
Multi-party approval in AWS Organizations gates high-risk operations behind a quorum of human approvers. Here is how it works and the security it buys.