Episode 168: Service Control Policies

Episode 168: Service Control Policies
Yalla To The Cloud
Episode 168: Service Control Policies

Jul 10 2025 | 00:20:51

/
Episode 168 July 10, 2025 00:20:51

Hosted By

Ariel Munafo Avi Keinan Boaz Ziniman

Show Notes

בפינה זו, נגיש לכם מידע על העבודה היומיומית בסביבת ענן מנקודת המבט שלנו.
דוברי הפרק: אריאל מונפו ואבי קינן
 
בפרק זה נדבר על Service Control Policies (SCP), מה המטרה של SCP, אילו פוליסות מומלץ להטמיע ואיך מדבגים פוליסה שחוסמת אותנו מליצור דיסק ב-EC2
 
רוצים להתעדכן בתכנים נוספים בנושאי ענן וטכנולוגיות מתקדמות? הירשמו עכשיו לניוזלטר שלנו ותמיד תישארו בעניינים. להרשמה: https://www.israelclouds.com/newslettersignup
 
View Full Transcript

Episode Transcript

[00:00:26] Okay 4th of July service control policies or SCP organizations or kinami the mashuma as landing zone or control tower okay as Baragashbo landing zone as deny Imani tag policies the service control policies name tag organization tag the creator tag him in case sensitive was the holy chapter case the lowercase Mr. [00:05:01] Organization AWS PRA AWSRA privacy the security okay Organization account a payer account a master account production production follow the best practice compliance ahead of humanity Organization Amazon Organization unit Organization unit there's alcohol Organization unit Organization organization unit ou specifically production public IP instance him in public IP as AWS Organization management account management account Service control policy test account Sababa policies but afraid bits more Neil Hatfield any global service control policies disabled bonafil the filter service control policies at full AWS access policy name restrict unencrypted EBS volumes not big contact SecOps policy contact SecOps volume organization organization production the whole alcohol machine production specific test production volumes parameter create volume be service control policies similar encoded authorization failure message in kudash, aws, STS and SD code when hats they automatically decode authorized message encoded message output text when they created the Top Kuda in JQ SID create volume without encryption contact SecOps or safety contact SecOps volume key encryption false encryption false customer success as 4th of July.

Other Episodes