<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Identity &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/tag/identity/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Wed, 19 Nov 2025 23:21:24 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Simplify access to external services using AWS IAM Outbound Identity Federation</title>
		<link>https://noise.getoto.net/2025/11/20/simplify-access-to-external-services-using-aws-iam-outbound-identity-federation/</link>
		
		<dc:creator><![CDATA[Donnie Prakoso]]></dc:creator>
		<pubDate>Wed, 19 Nov 2025 23:21:24 +0000</pubDate>
				<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[launch]]></category>
		<category><![CDATA[news]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=66f3e5dbf1ad84fa938ccdeb53ae16d6</guid>

					<description><![CDATA[AWS IAM now enables outbound identity federation, allowing developers to securely authenticate AWS workloads with external services using short-lived JSON Web Tokens instead of storing long-term credentials like API keys and passwords.]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Analyze AWS Network Firewall logs using Amazon OpenSearch dashboard</title>
		<link>https://noise.getoto.net/2025/11/19/analyze-aws-network-firewall-logs-using-amazon-opensearch-dashboard/</link>
		
		<dc:creator><![CDATA[Hoorang Broujerdi]]></dc:creator>
		<pubDate>Tue, 18 Nov 2025 22:19:59 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[Amazon OpenSearch Service]]></category>
		<category><![CDATA[AWS Network Firewall]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=daa1197e74d110112d0bb8d86af0fc6e</guid>

					<description><![CDATA[Amazon CloudWatch and Amazon OpenSearch Service have launched a new dashboard that simplifies the analysis of AWS Network Firewall logs. Previously, in our blog post How to analyze AWS Network Firewall logs using Amazon OpenSearch Service we demonstrated the required services and steps to create an OpenSearch dashboard. The new dashboard removes these extra steps […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Use scalable controls to help prevent access from unexpected networks</title>
		<link>https://noise.getoto.net/2025/08/29/use-scalable-controls-to-help-prevent-access-from-unexpected-networks/</link>
		
		<dc:creator><![CDATA[Sowjanya Rajavaram]]></dc:creator>
		<pubDate>Thu, 28 Aug 2025 22:13:26 +0000</pubDate>
				<category><![CDATA[Data protection]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[service control policies]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=eab114dcf17e513abdca48c756a9ec43</guid>

					<description><![CDATA[As your organization grows, the amount of data you own and the number of data sources to store and process your data across multiple Amazon Web Services (AWS) accounts increases. Enforcing consistent access controls that restrict access to known networks might become a key part in protecting your organization’s sensitive data. Previously, AWS customers could […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Effectively implementing resource controls policies in a multi-account environment</title>
		<link>https://noise.getoto.net/2025/03/26/effectively-implementing-resource-controls-policies-in-a-multi-account-environment/</link>
		
		<dc:creator><![CDATA[Tatyana Yatskevich]]></dc:creator>
		<pubDate>Wed, 26 Mar 2025 16:17:12 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[Data protection]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=757e99b0972d7ed27dbd3683e73f3a4a</guid>

					<description><![CDATA[Every organization strives to empower teams to drive innovation while safeguarding their data and systems from unintended access. For organizations that have thousands of Amazon Web Services (AWS) resources spread across multiple accounts, organization-wide permissions guardrails can help maintain secure and compliant configurations. For example, some AWS services support resource-based policies that can be used to […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Connect your on-premises Kubernetes cluster to AWS APIs using IAM Roles Anywhere</title>
		<link>https://noise.getoto.net/2025/02/24/connect-your-on-premises-kubernetes-cluster-to-aws-apis-using-iam-roles-anywhere/</link>
		
		<dc:creator><![CDATA[Varun Sharma]]></dc:creator>
		<pubDate>Mon, 24 Feb 2025 16:25:01 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[authentication]]></category>
		<category><![CDATA[authorization]]></category>
		<category><![CDATA[EKS]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM Roles Anywhere]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security token service]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<category><![CDATA[X.509 certificate]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=13538fb61a99518e62926adb5496f817</guid>

					<description><![CDATA[Many customers want to seamlessly integrate their on-premises Kubernetes workloads with AWS services, implement hybrid workloads, or migrate to AWS. Previously, a common approach involved creating long-term access keys, which posed security risks and is no longer recommended. While solutions such as Kubernetes secrets vault and third-party options exist, they fail to address the underlying […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to restrict Amazon S3 bucket access to a specific IAM role</title>
		<link>https://noise.getoto.net/2025/02/14/how-to-restrict-amazon-s3-bucket-access-to-a-specific-iam-role/</link>
		
		<dc:creator><![CDATA[Chris Craig]]></dc:creator>
		<pubDate>Fri, 14 Feb 2025 21:18:59 +0000</pubDate>
				<category><![CDATA[Amazon Simple Storage Service (S3)]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[Best of]]></category>
		<category><![CDATA[How-to]]></category>
		<category><![CDATA[IAM roles]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[NotPrincipal element]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Top Posts*]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=408228a67639d74e71d2c788bd65e305</guid>

					<description><![CDATA[February 14, 2025: This post was updated with the recommendation to restrict S3 bucket access to an IAM role by using the aws:PrincipalArn condition key instead of the aws:userid condition key. April 2, 2021: In the section “Granting cross-account bucket access to a specific IAM role,” we updated the second policy to fix an error. […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Important changes to CloudTrail events for AWS IAM Identity Center</title>
		<link>https://noise.getoto.net/2024/11/19/important-changes-to-cloudtrail-events-for-aws-iam-identity-center/</link>
		
		<dc:creator><![CDATA[Arthur Mnev]]></dc:creator>
		<pubDate>Tue, 19 Nov 2024 18:20:01 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[Amazon CloudTrail]]></category>
		<category><![CDATA[announcements]]></category>
		<category><![CDATA[AWS CloudTrail]]></category>
		<category><![CDATA[AWS IAM Identity Center]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[CloudTrail]]></category>
		<category><![CDATA[IAM Identity Center]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=abe4f2c87cb49d56fda1e7c94f4b1b40</guid>

					<description><![CDATA[AWS IAM Identity Center is streamlining its AWS CloudTrail events by including only essential fields that are necessary for workflows like audit and incident response. This change simplifies user identification in CloudTrail, addressing customer feedback. It also enhances correlation between IAM Identity Center users and external directory services, such as Okta Universal Directory or Microsoft […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>What’s new in Cloudflare: Account Owned Tokens and Zaraz Automated Actions</title>
		<link>https://noise.getoto.net/2024/11/14/whats-new-in-cloudflare-account-owned-tokens-and-zaraz-automated-actions/</link>
		
		<dc:creator><![CDATA[Joseph So]]></dc:creator>
		<pubDate>Thu, 14 Nov 2024 14:00:00 +0000</pubDate>
				<category><![CDATA[Analytics]]></category>
		<category><![CDATA[Developers]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Managed Components]]></category>
		<category><![CDATA[Product News]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Zaraz]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=3bffe1a00a341c7b05a874ebfbc61ab8</guid>

					<description><![CDATA[Cloudflare customers can now create Account Owned Tokens , allowing more flexibility around access control for their Cloudflare services. Additionally, Zaraz Automation Actions streamlines event tracking and third-party tool integration.]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to use interface VPC endpoints to meet your security objectives</title>
		<link>https://noise.getoto.net/2024/10/22/how-to-use-interface-vpc-endpoints-to-meet-your-security-objectives/</link>
		
		<dc:creator><![CDATA[Joaquin Manuel Rinaudo]]></dc:creator>
		<pubDate>Tue, 22 Oct 2024 13:02:19 +0000</pubDate>
				<category><![CDATA[Amazon VPC]]></category>
		<category><![CDATA[AWS PrivateLink]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<category><![CDATA[VPC endpoint]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=ee0050a098bd3778e45a55a5af3fd95a</guid>

					<description><![CDATA[Amazon Virtual Private Cloud (Amazon VPC) endpoints—powered by AWS PrivateLink—enable customers to establish private connectivity to supported AWS services, enterprise services, and third-party services by using private IP addresses. There are three types of VPC endpoints: interface endpoints, Gateway Load Balancer endpoints, and gateway endpoints. An interface VPC endpoint, in particular, allows customers to design […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Best practices working with self-hosted GitHub Action runners at scale on AWS</title>
		<link>https://noise.getoto.net/2024/06/25/best-practices-working-with-self-hosted-github-action-runners-at-scale-on-aws/</link>
		
		<dc:creator><![CDATA[Shilpa Sharma]]></dc:creator>
		<pubDate>Tue, 25 Jun 2024 14:00:45 +0000</pubDate>
				<category><![CDATA[Amazon API Gateway]]></category>
		<category><![CDATA[Amazon CloudWatch]]></category>
		<category><![CDATA[Amazon EC2]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[AWS Lambda]]></category>
		<category><![CDATA[AWS Security Token Service]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=4ec11d28d105b5fd040e9d86af56bc0f</guid>

					<description><![CDATA[Overview GitHub Actions is a continuous integration and continuous deployment platform that enables the automation of build, test and deployment activities for your workload. GitHub Self-Hosted Runners provide a flexible and customizable option to run your GitHub Action pipelines. These runners allow you to run your builds on your own infrastructure, giving you control over the […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Establishing a data perimeter on AWS: Analyze your account activity to evaluate impact and refine controls</title>
		<link>https://noise.getoto.net/2024/05/29/establishing-a-data-perimeter-on-aws-analyze-your-account-activity-to-evaluate-impact-and-refine-controls/</link>
		
		<dc:creator><![CDATA[Achraf Moussadek-Kabdani]]></dc:creator>
		<pubDate>Wed, 29 May 2024 20:19:27 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[Data protection]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[service control policies]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=1a818414ddb7b9b0c4de45e932f5ec79</guid>

					<description><![CDATA[A data perimeter on Amazon Web Services (AWS) is a set of preventive controls you can use to help establish a boundary around your data in AWS Organizations. This boundary helps ensure that your data can be accessed only by trusted identities from within networks you expect and that the data cannot be transferred outside […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to use AWS managed applications with IAM Identity Center</title>
		<link>https://noise.getoto.net/2024/05/13/how-to-use-aws-managed-applications-with-iam-identity-center/</link>
		
		<dc:creator><![CDATA[Liam Wadman]]></dc:creator>
		<pubDate>Mon, 13 May 2024 19:55:00 +0000</pubDate>
				<category><![CDATA[AWS IAM Identity Center]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM Identity Center]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=6bef4d63b568b844c832953dc4d1b65d</guid>

					<description><![CDATA[AWS IAM Identity Center is the preferred way to provide workforce access to Amazon Web Services (AWS) accounts, and enables you to provide workforce access to many AWS managed applications, such as Amazon Q Developer (Formerly known as Code Whisperer). As we continue to release more AWS managed applications, customers have told us they want […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>The curious case of faster AWS KMS symmetric key rotation</title>
		<link>https://noise.getoto.net/2024/04/12/the-curious-case-of-faster-aws-kms-symmetric-key-rotation/</link>
		
		<dc:creator><![CDATA[Jeremy Stieglitz]]></dc:creator>
		<pubDate>Fri, 12 Apr 2024 19:44:38 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[announcements]]></category>
		<category><![CDATA[AWS Key Management Service (KMS)]]></category>
		<category><![CDATA[AWS Key Management Service*]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=8ae8d378aca4507a3ae174f33c4a610c</guid>

					<description><![CDATA[Today, AWS Key Management Service (AWS KMS) is introducing faster options for automatic symmetric key rotation. We’re also introducing rotate on-demand, rotation visibility improvements, and a new limit on the price of all symmetric keys that have had two or more rotations (including existing keys). In this post, I discuss all those capabilities and changes. […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Detecting and remediating inactive user accounts with Amazon Cognito</title>
		<link>https://noise.getoto.net/2024/04/09/detecting-and-remediating-inactive-user-accounts-with-amazon-cognito/</link>
		
		<dc:creator><![CDATA[Harun Abdi]]></dc:creator>
		<pubDate>Tue, 09 Apr 2024 19:51:59 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[Amazon Cognito]]></category>
		<category><![CDATA[Amazon DynamoDB]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[AWS Lambda]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=c03969b94356434383c8cbea8bb8b322</guid>

					<description><![CDATA[For businesses, particularly those in highly regulated industries, managing user accounts isn’t just a matter of security but also a compliance necessity. In sectors such as finance, healthcare, and government, where regulations often mandate strict control over user access, disabling stale user accounts is a key compliance activity. In this post, we show you a […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Modern web application authentication and authorization with Amazon VPC Lattice</title>
		<link>https://noise.getoto.net/2024/02/23/modern-web-application-authentication-and-authorization-with-amazon-vpc-lattice/</link>
		
		<dc:creator><![CDATA[Nigel Brittain]]></dc:creator>
		<pubDate>Fri, 23 Feb 2024 16:47:55 +0000</pubDate>
				<category><![CDATA[Amazon VPC lattice]]></category>
		<category><![CDATA[Expert (400)]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=298e68990b164868ccaa8fd8f818ec1c</guid>

					<description><![CDATA[When building API-based web applications in the cloud, there are two main types of communication flow in which identity is an integral consideration: User-to-Service communication: Authenticate and authorize users to communicate with application services and APIs Service-to-Service communication: Authenticate and authorize application services to talk to each other To design an authentication and authorization solution for these […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Simplify workforce identity management using IAM Identity Center and trusted token issuers</title>
		<link>https://noise.getoto.net/2023/12/07/simplify-workforce-identity-management-using-iam-identity-center-and-trusted-token-issuers/</link>
		
		<dc:creator><![CDATA[Roberto Migli]]></dc:creator>
		<pubDate>Thu, 07 Dec 2023 16:15:19 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[AWS IAM Identity Center]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=147667c27e41d35ccbf0a4f23a95b03f</guid>

					<description><![CDATA[AWS Identity and Access Management (IAM) roles are a powerful way to manage permissions to resources in the Amazon Web Services (AWS) Cloud. IAM roles are useful when granting permissions to users whose workloads are static. However, for users whose access patterns are more dynamic, relying on roles can add complexity for administrators who are […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Enable Security Hub partner integrations across your organization</title>
		<link>https://noise.getoto.net/2023/10/04/enable-security-hub-partner-integrations-across-your-organization/</link>
		
		<dc:creator><![CDATA[Joaquin Manuel Rinaudo]]></dc:creator>
		<pubDate>Wed, 04 Oct 2023 20:57:07 +0000</pubDate>
				<category><![CDATA[AWS Security Hub]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=144cc12d80ef9aa94038a6be335743b5</guid>

					<description><![CDATA[AWS Security Hub offers over 75 third-party partner product integrations, such as Palo Alto Networks Prisma, Prowler, Qualys, Wiz, and more, that you can use to send, receive, or update findings in Security Hub. We recommend that you enable your corresponding Security Hub third-party partner product integrations when you use these partner solutions. By centralizing […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Enable external pipeline deployments to AWS Cloud by using IAM Roles Anywhere</title>
		<link>https://noise.getoto.net/2023/09/26/enable-external-pipeline-deployments-to-aws-cloud-by-using-iam-roles-anywhere/</link>
		
		<dc:creator><![CDATA[Olivier Gaumond]]></dc:creator>
		<pubDate>Tue, 26 Sep 2023 15:59:15 +0000</pubDate>
				<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[devops]]></category>
		<category><![CDATA[IAM Roles Anywhere]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<category><![CDATA[X.509 certificate]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=94d7268afc5795e3ce211ede0296a978</guid>

					<description><![CDATA[Continuous integration and continuous delivery (CI/CD) services help customers automate deployments of infrastructure as code and software within the cloud. Common native Amazon Web Services (AWS) CI/CD services include AWS CodePipeline, AWS CodeBuild, and AWS CodeDeploy. You can also use third-party CI/CD services hosted outside the AWS Cloud, such as Jenkins, GitLab, and Azure DevOps, […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to implement cryptographic modules to secure private keys used with IAM Roles Anywhere</title>
		<link>https://noise.getoto.net/2023/09/20/how-to-implement-cryptographic-modules-to-secure-private-keys-used-with-iam-roles-anywhere/</link>
		
		<dc:creator><![CDATA[Edouard Kachelmann]]></dc:creator>
		<pubDate>Wed, 20 Sep 2023 19:55:17 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[authentication]]></category>
		<category><![CDATA[authorization]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[Cryptographic library]]></category>
		<category><![CDATA[Hardware security modules]]></category>
		<category><![CDATA[IAM Roles Anywhere]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[PKCS#11]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<category><![CDATA[X.509 certificate]]></category>
		<category><![CDATA[YubiKey]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=1d7699bb596f154a24033002b191c972</guid>

					<description><![CDATA[AWS Identity and Access Management (IAM) Roles Anywhere enables workloads that run outside of Amazon Web Services (AWS), such as servers, containers, and applications, to use X.509 digital certificates to obtain temporary AWS credentials and access AWS resources, the same way that you use IAM roles for workloads on AWS. Now, IAM Roles Anywhere allows […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Establishing a data perimeter on AWS: Allow access to company data only from expected networks</title>
		<link>https://noise.getoto.net/2023/09/05/establishing-a-data-perimeter-on-aws-allow-access-to-company-data-only-from-expected-networks/</link>
		
		<dc:creator><![CDATA[Laura Reith]]></dc:creator>
		<pubDate>Tue, 05 Sep 2023 13:34:00 +0000</pubDate>
				<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Data protection]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Network security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[service control policies]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=7082a2a7696ede9a68adbb7047106355</guid>

					<description><![CDATA[A key part of protecting your organization’s non-public, sensitive data is to understand who can access it and from where. One of the common requirements is to restrict access to authorized users from known locations. To accomplish this, you should be familiar with the expected network access patterns and establish organization-wide guardrails to limit access […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 84/426 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2025-12-07 22:47:02 by W3 Total Cache
-->