DEV Community

Discussion on: AWS access keys — 5 Tips To Safely Use Them.

Collapse
 
andrewbrown profile image
Andrew Brown 🇨🇦 • Edited

One suggestion I don't believe was set here is you should generate out both keys and make one inactive. You have a limit of 2 within your account

When a malicious actor is looking to gain access to your AWS accounts they are looking to generate a backdoor and will use up the available key since this can easily go unnoticed.

So just generate the other one and make it inactive, since you probably don't need two sets of keys.

You might want to swap out one of those articles tags eg DevOps or Cloud for instead Security.
This will get you more visibility for this article.

Collapse
 
loujaybee profile image
Lou (🚀 Open Up The Cloud ☁️)

Hey Andrew, thanks for the tag tip... I'm still quite new to the whole thing.

Ah that's an interesting one that I've not heard before! Thanks for the heads up, I'll check that one out.