시작하기무료로 시작하기

Right-size a role from its own activity

ReportsExportRole is allowed forty-two actions. In Policy from activity, the ninety-day trail shows the calls it actually made.

Toggle the highlight to see which of the granted actions the trail used, then generate the least-privilege policy and watch the reach fall from forty-two down to three.

IAM Access Analyzer runs this same comparison for you, though it emits resource placeholders you fill in and cannot see S3 object reads at all.

What is the one thing that trail cannot tell you?

이 연습은 강의의 일부입니다

Using AWS Security for Developers

강의 보기

실습형 인터랙티브 연습문제

이론을 실습으로 바꾸는 인터랙티브 연습 중 하나를 만나보세요

연습 시작