Before diving in, make sure to check Cloud Connectors Guide to learn about Cloud Connectors.
What is AWS Connector?
The AWS Connector in Cloudsania is a secure bridge between your Cloudsania account and AWS infrastructure. It enables automated operations on your AWS resources, including provisioning infrastructure, managing workloads, and monitoring cloud environments. This integration reduces complexity, enhances security, and optimizes operational efficiency.Key Features and Capabilities
Authentication & Security
IAM Integration
IAM Integration
- Secure IAM user creation and management
- Role-based access control (RBAC)
- Policy-based permissions
Data Security
Data Security
- End-to-end encryption for data in transit
- Secure credential management
- No storage of raw AWS credentials
AWS Connector Access Type
The AWS Connector supports two access types to match your security requirements and operational needs.
Default Access
Recommended for most users-Full access to monitor and manage all resources.-Permission to manage security configurations.
Least Privilege Access
For restricted access-Restricted to specific resources.-Limited to required permissions only.
Cloudsania Default Access Policy
Changes Made to Your AWS Account
When setting up an AWS Connector, several changes are made to your AWS account. Understanding these changes is crucial for security and compliance.
IAM Users Created
When you set up an AWS Connector, Cloudsania creates several IAM users in your AWS account to handle different aspects of automation and management. Each user has specific responsibilities and permissions aligned with the principle of least privilege.cloudsania-default-access-connector
- Main connector that manages overall AWS account access
- Handles core account-level operations
- Manages other connector permissions
- Controls global AWS configurations
Each connector is created with the minimum required permissions following AWS security best practices. The permissions are scoped to specific services and actions needed for their designated responsibilities.