IAM Roles
An IAM role is an identity with permissions that can be assumed by trusted principals. Roles provide temporary credentials and are widely used by AWS services and workloads.
Why it matters
Roles reduce the need to place long-lived access keys inside applications.
How it works
Trusted principal assumes role → temporary credentials are issued → workload calls AWS services with role permissions.
Core Concept
A role can be assumed by a trusted principal and provides temporary credentials.
EC2 instances commonly use an IAM role when they need to access another AWS service.
What you should remember
Key idea
A role can be assumed by a trusted principal and provides temporary credentials.
Key idea
EC2 instances commonly use an IAM role when they need to access another AWS service.
Real-world example
Use a realistic cloud workload and focus on the responsibility of this AWS service.
Choose the service that matches the responsibility instead of forcing every workload into one resource.
Quick Test
1 QuestionWhat is the main idea of this AWS lesson?