Robust logical isolation using AWS STS Scope Down Policies
We explore approaches to tenant isolation in AWS. Including a terraform / boto3 demo for hardened tenant isolation in a SaaS environment.
Feb 11, 20236 min read

Search for a command to run...
We explore approaches to tenant isolation in AWS. Including a terraform / boto3 demo for hardened tenant isolation in a SaaS environment.

Intro Creating least privilege policies is an integral part of creating secure AWS workloads. A least privilege policy can : reduce blast radius in the event of a breach. prevent bad application logic from deleting critical resources. prevent "cross...
