KB 906003 - How to add custom IAM Policies to Users in AWS

KB 906003 - How to add custom IAM Policies to Users in AWS

Introduction

IAM (Identity and Access Management) in AWS (Amazon Web Services) allows you to control access to your resources securely. To manage access permissions effectively, it's crucial to update IAM policies for users as your requirements evolve. This KB article outlines the steps to update IAM policies for users in AWS.

Prerequisites

  1. AWS account with appropriate permissions to manage IAM users and policies.
  2. Basic understanding of IAM concepts such as users, groups, roles, and policies.

Process

      Step 1: Access IAM Dashboard.

Click on the "Services" dropdown menu and select "IAM" under the "Security, Identity & Compliance" section.

Step 2: Select policies under Access Management in sidebar menu.

 

Step 3: Select Create Policy and add the JSON File.

Create custom policy in AWS IAM

Step 4: Add the custom-made policy JSON file here.

In AWS a User or User Group can be assigned with AWS Managed Policy (Pre-Made Policies by AWS) or Custom Policy, if you want to know how to create custom AWS IAM Policies follow this KB Article.

Paste the custom policy JSON here.


Step 5: Assign Custom Policy to User

Select Users under Access Management sidebar menu, and select the user you want to update the policy with.

Select "Add Permissions" under Permissions Tab


Select Attach existing policies directly and search for the newly added custom policy in the search box, once selected click Next: Review button.



Review the policy and click Add Permission to assign the policy to selected user.

Conclusion

Updating IAM policies for users in AWS is essential to ensure the right level of access control and security within your AWS environment. By following the steps outlined in this KB article, you can effectively manage and update IAM policies to align with your organization's evolving needs.

Remember to adhere to the principle of least privilege when assigning permissions to users, granting only the permissions necessary for their specific roles and responsibilities. Regularly review and audit IAM policies to maintain a robust security posture in AWS.

    • Related Articles

    • KB 574001 - How to spin up private EKS Cluster on AWS?

      EKS Cluster : Amazon Elastic Kubernetes Service (Amazon EKS) is a managed service that eliminates the need to install, operate, and maintain your own Kubernetes control plane on Amazon Web Services (AWS). Kubernetes is an open-source system that ...
    • KB 903444 - How to Upload and Add Custom Device Image in GNS3

      Purpose This article explains how to upload and add custom device images (IOS, QCOW2, etc.) in GNS3 so they can be used in your lab topology. Supported Image Types (Examples) Cisco IOS (Dynamips) IOU/IOL images QEMU (QCOW2) CSR1000v FortiGate Palo ...
    • KB 567100 - VPN users unable to reach internet -Fortinet

      We achieved success after enabling split tunnel for both VPN groups you created also on the tunnel mode and full mode sections. After that we were able to connect to the VPN with different users and have access to the internal network wihout loosing ...
    • KB 159001 - Some Basic Configuration on Proxmox

      Delete VM on Proxmox Go to the server Select the VM which you want to delete Select the more option (Shown in picture) Click on the Remove Provide the VM ID number Click on Remove button, VM will be delete from server Create a Template Go to the ...
    • KB 019765 - How to Add Device Images in PNETLab (Installed on Proxmox)?

      1. Overview This article provides a comprehensive guide for adding device images (such as Cisco, Huawei, FortiGate, and other network operating systems) to PNETLab. Adding images is essential for creating virtual network labs. There are two primary ...
    • Recent Articles

    • KB-630208 | How to use Find and Locate to search for files in Linux

      Purpose To provide Linux administrators and Field Engineers with guidance on using the find and locate utilities to efficiently search for files and directories within a Linux filesystem based on criteria such as name, type, size, timestamps, ...
    • KB-630164 | How to use rsync to Synchronize Files

      Purpose To provide a clear and practical procedure for using the rsync utility to synchronize files and directories between local systems and remote hosts, including push and pull operations, while preserving file attributes and optimizing data ...
    • KB-630107 | How to create a Linux swap file

      Purpose To provide Field Engineers and Linux administrators with a standardized procedure for creating, configuring, and validating a Linux swap file. This procedure helps ensure sufficient virtual memory is available when physical RAM is exhausted ...
    • MSI All-in-One (AIO) PC – Physical Damage Policy for Warranty Claims

      MSI All-in-One (AIO) PC – Physical Damage Policy for Warranty Claims MSI's standard warranty does not cover physical or accidental damage to an All-in-One (AIO) PC. If the damage is determined to be caused by external factors rather than a ...
    • KB 134833 - Troubleshooting NVSM Alert NV-CPU-XX – Unrecoverable CPU Internal Error

      Purpose This document provides a general troubleshooting procedure for the NVIDIA System Management (NVSM) alert NV-CPU-XX, which indicates that a CPU has reported an internal error. The article outlines how to verify whether the alert represents an ...
    • Popular Articles

    • CP Plus Camera and NVR Configuration

      NVR Configuration The CP Plus Pro Series of NVRs have been meticulously designed for providing you with upgraded performance and higher recording quality in your IP video surveillance solution. The robust processor that has been inculcated in this ...
    • KB 775235 - Kerberos Authentication – Overview

      What is Kerberos? Kerberos is a secure authentication method used in our Active Directory (AD) environment (mbuzztech.com). It allows users to: Access multiple systems without re-entering passwords (Single Sign-On – SSO) Log in once Where We Use It ...
    • How to Remove and Reinstall NVIDIA Drivers on Ubuntu

      This article provides step by step guide to completely remove existing NVIDIA drivers and reinstall specific version of the NVIDIA driver on the Ubuntu system Prerequisites Administrative (sudo) access to the Ubuntu system. Internet access to ...
    • KB 692001 - Personal Computers and Servers - Classification and Point of Contact

      We can classify the computers that MBUZZ handles based on their form-factor as below: Tower Workstations, Desktops, Gaming PCs and SFF (Small form factor) PCs fall under this category. These are computers people would use on a desk and rarely move. ...
    • KB 298031 - M.2 SSD Tier List

      The sequential read and write speeds, which are usually the most advertised number, are not a proper benchmark of real-world performance or the quality of an SSD. This article categorizes and tiers SSDs based on factors like the type of NAND flash, ...