Evidence search
Search
Search titles, summaries, topics, providers, authors, and the full open-access corpus.
Results for “cedar”
2 publicationsTechnical guideSource-based analysisResearch noteSource-based analysis
Design application authorization before writing Cedar policies
Define business actions, trustworthy entities and tenant boundaries before writing Cedar policies, then make the application responsible for enforcing the resulting decision.
Identity & access · AWS / Cedar · By Cloud Security DeskPlace AWS guardrails on the principal and the resource
SCPs and RCPs constrain different sides of a request. A useful review records both the applicable guardrails and the policies that actually grant access.
Identity & access · AWS · By Cloud Security Desk