MAF and user specified access, i also like the user friendly nature of IAM service to control everything Review collected by and hosted on G2.com.
i do not like how we have different access key to use CLI and SDK Review collected by and hosted on G2.com.
An easy tool to securely manage identities, resources, and permissions at scale. Review collected by and hosted on G2.com.
At times it is required to use and manage different AWS API keys. Review collected by and hosted on G2.com.
I like the level of control this gives me to my products in AWS. Giving me control to be as secure or open as I like. One of the best services out there and the fact you set it all up yourself means you know you are secure. Unlike other providers you just have to trust. they have great guides and support to help you and advice on the best configurations. Review collected by and hosted on G2.com.
Can be repetitive to setup for each product but worth it as you know it is done correctly. I would not change this as I think it work great and once you learn the first time it take no time at all to set up multiple times. Review collected by and hosted on G2.com.
I love the fine grain control of access. It makes my admin workflow very simple. It's a really simple feature, but when setting up an account, I love the check list on the home page of IAM that shows you some security best practices, like removing root. Review collected by and hosted on G2.com.
I really can't think of anything I dislike about IAM. Sometimes I feel like I end up having to set up the same thing again and again when I'm creating a new account, but anytime I've had to do that I can automate it easily. I really wouldn't want AWS to change the set up process because I think it would make people create holes that shouldn't exist. Review collected by and hosted on G2.com.
I like the ability to assume roles, grant temporary access keys, and the ability to grant or deny access at fine-grained and customizable levels. Review collected by and hosted on G2.com.
There seems to still be some discontinuity in permissions (really talking CloudFormation) for various cloud resources. Some you need to specify names of resources, other complete ARNs, while others don't let you specify specific resources at all. Review collected by and hosted on G2.com.
IAM gives you incredible control over AAA in AWS. Review collected by and hosted on G2.com.
It is very difficult to figure out how to use it, particularly for policy assignment and cross-account access, and the documentation is not particularly intuitive. Review collected by and hosted on G2.com.
The ability to put policies that limit a wide range of access to the AWS console. It allows us to grant people access to view, but only a single account can make changes. Review collected by and hosted on G2.com.
Currently, i am very happy with the product and don't have any negative feedback. Review collected by and hosted on G2.com.
The level of granularity you can get on "MOST" resources is absolutely fantastic from a security standpoint. Review collected by and hosted on G2.com.
Sometimes it's hard to troubleshoot what is blocking or not blocking what you think it should be. Review collected by and hosted on G2.com.
The integration with all existing services to allow/deny access to all other resources is fanastic. Because all the IAM policies built the same once you learn the service you can use it everywhere. Review collected by and hosted on G2.com.
With the introduction of newer features like the boundary policies it seems that organizational features weren't fully thought out. They should allow multiple boundary policies to be applied. One for the organizational level and one for the account. Review collected by and hosted on G2.com.
It simplifies AWS account management for users with roles and policies. It helps us across multiple AWS accounts giving RABC accesses. Helps in EC2 instances having secured access to other AWS services using EC2 roles. What I find most useful is enablement with Multifactor Autentication. Review collected by and hosted on G2.com.
There is nothing much to dislike with this service but could be said more of enhancements. I would like to have more feature rich services while intergarting it with Directory services outside of Microsoft Active Directory. More enhanced integration with existing Active Directory role based access controls. Review collected by and hosted on G2.com.