Data Security in the AWS Cloud
Conclusions
Even AWS cannot protect private keys against every form of threat on third-party servers. Utilizing the CloudHSM services moves admins towards an acceptable level of protection for their corporate data. Regardless, users have to have a certain amount of trust in Amazon or – where possible – adapt the cloud architecture to avoid storing sensitive data.
KMS makes using encryption relatively simple, which hopefully mitigates some admins' tendency to avoid encryption altogether.
Infos
- AWS policies: https://docs.aws.amazon.com/IAM/latest/UserGuide/access_policies.html
- SNS: https://docs.aws.amazon.com/sns/latest/dg/welcome.html
- S3: https://docs.aws.amazon.com/s3/?id
- KMS: https://docs.aws.amazon.com/kms/?id
- Creating and importing keys: https://docs.aws.amazon.com/kms/latest/developerguide/importing-keys-encrypt-key-material.html
- CloudHSM: https://docs.aws.amazon.com/cloudhsm/latest/userguide/introduction.html
« Previous 1 2 3 4
Buy this article as PDF
Express-Checkout as PDF
Price $2.95
(incl. VAT)
(incl. VAT)