Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
Do(n’t) try this at work - Technically, you _ca...
Search
Sponsored
·
Your Podcast. Everywhere. Effortlessly.
Share. Educate. Inspire. Entertain. You do you. We'll handle the rest.
→
Ben Bridts
May 27, 2021
210
0
Share
Do(n’t) try this at work - Technically, you _can_ do this
Ben Bridts
May 27, 2021
More Decks by Ben Bridts
See All by Ben Bridts
That's allowed? - Using IAM Roles Anywhere without AWS Private CA
benbridts
0
0
Using IAM Roles Anywhere for free
benbridts
1
39
The Hidden Costs of Managed Open Source
benbridts
0
50
re:Invent re:Cap 2023: Evolving your architecture
benbridts
0
74
A closer look at new ways to manage access - EKS Pod Identiy and S3 Access Grant
benbridts
0
29
From ‘huh?’ to privilege escalation
benbridts
0
47
re:Invent re:Cap - Removing Heavy Lifting
benbridts
0
120
Policy as Code: Putting best practices in your repository
benbridts
0
200
(Don't) try this at work - Lightning Talk
benbridts
0
150
Featured
See All Featured
The Impact of AI in SEO - AI Overviews June 2024 Edition
aleyda
5
1.1k
The Pragmatic Product Professional
lauravandoore
37
7.3k
Rebuilding a faster, lazier Slack
samanthasiow
85
9.5k
Raft: Consensus for Rubyists
vanstee
141
7.4k
The Cult of Friendly URLs
andyhume
79
6.9k
The Power of CSS Pseudo Elements
geoffreycrofte
82
6.3k
Docker and Python
trallard
47
3.8k
SEOcharity - Dark patterns in SEO and UX: How to avoid them and build a more ethical web
sarafernandez
0
190
Collaborative Software Design: How to facilitate domain modelling decisions
baasie
1
220
Leading Effective Engineering Teams in the AI Era
addyosmani
9
2k
How to Grow Your eCommerce with AI & Automation
katarinadahlin
PRO
1
190
Context Engineering - Making Every Token Count
addyosmani
9
910
Transcript
Do(n’t) try this at work Technically, you can do this
Ben Bridts
https://mobile.twitter.com/benbridts/status/1371812381161103362 https://via.benbridts.be/comsum/tweet
https://twitter.com/ben11kehoe/status/1074288317108232192 https://via.benbridts.be/comsum/packrat
https://sprocketfox.io/xssfox/2020/03/05/bigbuckopsworks/ https://via.benbridts.be/comsum/bigbucks
https://github.com/njbmartin/diggydb-nodejs https://via.benbridts.be/comsum/diggy
Using your access key
AWS Management Console
https://docs.aws.amazon.com/cli/latest/reference/iam/delete-login-profile.html
https://docs.aws.amazon.com/IAM/latest/UserGuide/console_controlling-access.html More info: https://docs.aws.amazon.com/IAM/latest/UserGuide/id_roles_providers_enable-console-custom-url.html
None
None
None
None
https://signin.aws.amazon.com/federation? Action=login& Issuer=a+python+script& Destination=https%3A%2F%2Fconsole.aws.amazon.com%2F& SigninToken=ow8X9[...]XAyan
Do • Simplify switching between accounts • Start a new
browser for every account Don’t • Use credentials from EC2 / Lambda / CodeBuild / … • Block console access
Infinite Storage
AWS CloudShell
https://aws.amazon.com/cloudshell/faqs/
https://aws.amazon.com/cloudshell/faqs/
https://signin.aws.amazon.com/switchrole https://docs.aws.amazon.com/cli/latest/reference/sts/assume-role.html
None
None
https://botocore.amazonaws.com/v1/documentation/api/latest/reference/loaders.html
https://github.com/iann0036/vscode-aws-cloudshell https://via.benbridts.be/comsum/vscode
Reducing Errors The easy way
Amazon CloudWatch
None
https://…execute-api.eu-west-1.amazonaws.com/Prod/run https://…execute-api.eu-west-1.amazonaws.com/Prod/run?fail=y
None
None
None
https://docs.aws.amazon.com/service-authorization/latest/reference/list_amazoncloudwatch.html
None
Thank you! Ben Bridts
[email protected]
@BenBridts | @WeAreCloudar www.cloudar.be