Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Security and cloud roles #55

Open
paulalex opened this issue Sep 21, 2020 · 1 comment
Open

Security and cloud roles #55

paulalex opened this issue Sep 21, 2020 · 1 comment

Comments

@paulalex
Copy link

paulalex commented Sep 21, 2020

One consideration you might like to document is that when using cloud native services to deploy your infrastructure you have an additional security benefit in that the role which has permissions to amend your production infrastructure is only assumable by a cloud service (code build etc) and not assumable by any 'human' role.

Equally applying roles with different permissions to different stages in the deployment pipeline helps to ensure that, for example a deployment meant for a development account cannot actually be performed against a production account.

@andyblundell
Copy link
Contributor

Hi @paulalex sorry for slow pick-up. I like this, will add, thanks 👍

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants