Skip to content

Meghana1125-ui/AWS-IAM-Cloud-Security

Folders and files

NameName
Last commit message
Last commit date

Latest commit

ย 

History

7 Commits
ย 
ย 
ย 
ย 
ย 
ย 

Repository files navigation

๐Ÿ” AWS IAM Cloud Security

๐Ÿš€ Project Overview

This project demonstrates how AWS Identity and Access Management (IAM) can be used to securely control access to AWS resources. The project focuses on creating IAM users, groups, and policies while following security best practices.

A real-world cloud security scenario was implemented by creating Development and Production EC2 instances, assigning permissions through IAM policies, troubleshooting access issues using IAM Policy Simulator, and applying the Principle of Least Privilege.


โœ… Project Status

Completed Successfully


๐ŸŽฏ Objectives

  • Understand AWS IAM fundamentals
  • Create and manage IAM Users
  • Create IAM Groups
  • Create Custom IAM Policies
  • Configure Account Alias
  • Implement Least Privilege Access
  • Troubleshoot Access Denied Errors
  • Use IAM Policy Simulator
  • Manage Development and Production Resources
  • Follow Cloud Security Best Practices

โœจ Features

  • ๐Ÿ” IAM User Management
  • ๐Ÿ‘ฅ IAM Group Management
  • ๐Ÿ“œ Custom IAM Policies
  • ๐ŸŽญ Permission-Based Access Control
  • ๐Ÿท๏ธ Resource Tagging
  • ๐Ÿšซ Access Denied Troubleshooting
  • ๐Ÿ› ๏ธ IAM Policy Simulator Testing
  • โ˜๏ธ AWS Security Best Practices
  • ๐Ÿ’ฐ Resource Cleanup & Cost Management

๐Ÿ› ๏ธ Services Used

AWS Services

  • AWS IAM
  • Amazon EC2
  • IAM Policy Simulator

Tools

  • AWS Management Console
  • Git
  • GitHub

๐Ÿ—๏ธ Project Architecture

AWS Account
โ”‚
โ”œโ”€โ”€ Production EC2 Instance
โ”‚
โ”œโ”€โ”€ Development EC2 Instance
โ”‚
โ”œโ”€โ”€ IAM Group
โ”‚      โ”‚
โ”‚      โ””โ”€โ”€ IAM User
โ”‚
โ”œโ”€โ”€ Custom IAM Policy
โ”‚
โ”œโ”€โ”€ Account Alias
โ”‚
โ””โ”€โ”€ IAM Policy Simulator

๐Ÿ”‘ Key Skills Demonstrated

  • Identity and Access Management (IAM)
  • Cloud Security Fundamentals
  • Principle of Least Privilege
  • Permission Management
  • Access Control
  • Policy Troubleshooting
  • Resource Tagging
  • AWS Security Best Practices
  • Cloud Resource Management

๐Ÿš€ Implementation Steps

  1. Selected AWS Region
  2. Launched Production EC2 Instance
  3. Launched Development EC2 Instance
  4. Added Resource Tags
  5. Stopped Development Instance
  6. Opened IAM Service
  7. Created Account Alias
  8. Created Custom IAM Policy
  9. Configured Policy Statements
  10. Created IAM Group
  11. Created IAM User
  12. Downloaded Login Credentials (.csv)
  13. Copied Console Sign-In URL
  14. Logged in as IAM User
  15. Encountered Access Denied Error
  16. Used IAM Policy Simulator
  17. Identified Missing Permission
  18. Updated IAM Policy
  19. Verified Access Successfully
  20. Deleted Resources After Testing

๐Ÿ“ธ Screenshots

1. Region Selected

Region Selected

2. EC2 Instances Created

EC2 Instances Created

3. Account Alias Created

Account Alias

4. IAM Policy Created

IAM Policy Created

5. IAM User Group Created

IAM Group

6. IAM User Created

IAM User

7. Login Credentials Downloaded

CSV Downloaded

8. Console Sign-In URL

Console Sign In

9. EC2 Access Denied Error

Access Denied

10. Development Instance Stopped

EC2 Instance Stopped

11. IAM Policy Simulator

Policy Simulator

12. IAM Policy Statement

Policy Statement

13. Resource Tags Added

Resource Tags Added

14. Permission Allowed

Permission Allowed


๐Ÿž Challenge Faced

Access Denied Error

Problem

The IAM user was unable to perform actions on the Development EC2 instance.

Root Cause

The required permissions were missing from the IAM policy.

Solution

  • Opened IAM Policy Simulator
  • Tested denied actions
  • Identified missing permissions
  • Updated IAM Policy
  • Retested access successfully

๐Ÿ” What is IAM?

AWS IAM (Identity and Access Management) is a service used to securely control access to AWS resources.

IAM helps define:

  • Who can access AWS resources
  • What resources they can access
  • What actions they can perform

๐ŸŽ“ Learning Outcomes

  • AWS IAM Fundamentals
  • IAM Users and Groups
  • IAM Policies
  • Account Alias Configuration
  • Access Management
  • Policy Simulator Usage
  • Permission Troubleshooting
  • Cloud Security Best Practices
  • AWS Resource Management

๐Ÿ”ฎ Future Enhancements

  • Enable MFA for Users
  • Implement IAM Roles
  • Integrate AWS Organizations
  • Configure Cross-Account Access
  • Implement Advanced Security Policies

๐Ÿ“ Note

All AWS resources created during this project were deleted after successful testing to avoid unnecessary AWS charges and follow cloud cost-management best practices.


๐Ÿ‘ฉโ€๐Ÿ’ป Author

Meghana Paradeshi

Aspiring Cloud Engineer

GitHub: https://github.com/meghana1125-ui


โญ Support

If you found this project useful, consider giving it a โญ on GitHub.

About

Implemented AWS IAM security by creating users, groups, policies, account aliases, and troubleshooting permissions using IAM Policy Simulator in a real-world cloud environment.

Topics

Resources

License

Stars

1 star

Watchers

0 watching

Forks

Releases

No releases published

Packages

 
 
 

Contributors