Let me first answer the question: Is this practice even right?
Personally, Yes.Hold on, let me explain.
Why should a beginner who doesn’t know how this works or operates be given access?
I once read a story of a child who asked his parent about a car. Although they loved him very much, they didn’t buy the car for him because he would use it to harm himself.
Let’s read on to understand why access should not be given to all and why some people’s names should not be allowed to open the doors.
IDENTITY AND ACCESS
Imagine someone’s key opening our dooror their fingerprint opening our phone.
What now keeps our belongings at home safe? Or what ensures the privacy of our phone details?
Nothing!!!
Identity is who we are. We verify our identity using fingerprints, etc. usernames, passwords,
Access is what we can see or do once we’re logged in.
ACCESS IN THE CLOUD
Access in the cloud is all about controlling who can do what with the cloud resources.
Imagine our house with different rooms: a kitchen, a bedroom, and a study. Not everyone should have access to every room.
For example, our colleagues can hang out in the living room but shouldn’t enter our bedroom.
In the cloud, access works the same way.
Access to the cloud ensures that people can only use the resources for their job or position. That way, everything is organized and secure.
IDENTITY ACCESS MANAGEMENT
IAM stands for Identity and Access Management. It’s a system that helps control who can access what resources and what they can do once inside.
IAM ensures the right people have the right access to the right resources.
Only verified people (identity) can do specific things (access) online.
It uses a system of roles and permissions to keep everything safe and in control.
AWS IAM SYSTEM
AWS IAM (Identity and Access Management) System allow us to manage users, groups, and roleswith permissions.
With AWS IAM, we can set up Multi-Factor Authentication (MFA) for extra security, attach to existing identity systems, and monitor user activity.
In AWS, there is a root account where the IAM gives administrators a single place to set up and manage all user access.
I hope by now, you understand why some names shouldn’t open some doors