<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="FeedCreator 1.8" -->
<?xml-stylesheet href="https://wiki.quizz.vn/lib/exe/css.php?s=feed" type="text/css"?>
<rdf:RDF
    xmlns="http://purl.org/rss/1.0/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
    xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel rdf:about="https://wiki.quizz.vn/feed.php">
        <title>Wiki.Quizz.vn - aws:security</title>
        <description></description>
        <link>https://wiki.quizz.vn/</link>
        <image rdf:resource="https://wiki.quizz.vn/lib/exe/fetch.php?media=wiki:dokuwiki.svg" />
       <dc:date>2026-04-15T18:05:06+00:00</dc:date>
        <items>
            <rdf:Seq>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=aws:security:cloudtrail&amp;rev=1766929388&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=aws:security:envelope-encrytion&amp;rev=1766904935&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=aws:security:iam&amp;rev=1766929302&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=aws:security:kms&amp;rev=1766904929&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=aws:security:mfa&amp;rev=1766904381&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=aws:security:secrets-manager&amp;rev=1766904958&amp;do=diff"/>
                <rdf:li rdf:resource="https://wiki.quizz.vn/doku.php?id=aws:security:ssm-parameter-store&amp;rev=1766904984&amp;do=diff"/>
            </rdf:Seq>
        </items>
    </channel>
    <image rdf:about="https://wiki.quizz.vn/lib/exe/fetch.php?media=wiki:dokuwiki.svg">
        <title>Wiki.Quizz.vn</title>
        <link>https://wiki.quizz.vn/</link>
        <url>https://wiki.quizz.vn/lib/exe/fetch.php?media=wiki:dokuwiki.svg</url>
    </image>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=aws:security:cloudtrail&amp;rev=1766929388&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2025-12-28T13:43:08+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>cloudtrail</title>
        <link>https://wiki.quizz.vn/doku.php?id=aws:security:cloudtrail&amp;rev=1766929388&amp;do=diff</link>
        <description>CloudTrail

What it is: An AWS service that records API activity (who did what, when, from where).

What it’s for:

	*  Security auditing and investigation.
	*  Compliance reporting.
	*  Detect unexpected changes (e.g., someone changed IAM policy).</description>
    </item>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=aws:security:envelope-encrytion&amp;rev=1766904935&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2025-12-28T06:55:35+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>envelope-encrytion</title>
        <link>https://wiki.quizz.vn/doku.php?id=aws:security:envelope-encrytion&amp;rev=1766904935&amp;do=diff</link>
        <description>Envelope Encryption

What it is: A method where KMS protects a data key, and the data key encrypts the actual data.

What it’s for:

	*  Efficient encryption for large data (don’t use KMS directly to encrypt big payloads).
	*  Common pattern used by many AWS services automatically.</description>
    </item>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=aws:security:iam&amp;rev=1766929302&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2025-12-28T13:41:42+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>iam</title>
        <link>https://wiki.quizz.vn/doku.php?id=aws:security:iam&amp;rev=1766929302&amp;do=diff</link>
        <description>IAM (Identity and Access Management)

What it is: AWS service for managing who can access AWS and what they can do.

What it’s for:

	*  Create identities (users/roles) and attach permissions (policies).
	*  Enforce *least privilege* /liːst ˈprɪvəlɪdʒ/ (chỉ cấp đúng quyền cần).</description>
    </item>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=aws:security:kms&amp;rev=1766904929&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2025-12-28T06:55:29+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>kms</title>
        <link>https://wiki.quizz.vn/doku.php?id=aws:security:kms&amp;rev=1766904929&amp;do=diff</link>
        <description>KMS (Key Management Service)

What it is: A service to create, manage, and control access to encryption keys.

What it’s for:

	*  Encrypt data in AWS services (S3, EBS, RDS, DynamoDB, etc.).
	*  Control who can use keys to encrypt/decrypt.
	*  Audit key usage.</description>
    </item>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=aws:security:mfa&amp;rev=1766904381&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2025-12-28T06:46:21+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>mfa</title>
        <link>https://wiki.quizz.vn/doku.php?id=aws:security:mfa&amp;rev=1766904381&amp;do=diff</link>
        <description>MFA (Multi-Factor Authentication)

What it is: A login security method that requires two or more factors.

What it’s for:

	*  Protect IAM users from password theft.
	*  Add stronger security for sensitive actions (can be enforced via IAM policy conditions).</description>
    </item>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=aws:security:secrets-manager&amp;rev=1766904958&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2025-12-28T06:55:58+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>secrets-manager</title>
        <link>https://wiki.quizz.vn/doku.php?id=aws:security:secrets-manager&amp;rev=1766904958&amp;do=diff</link>
        <description>Secrets Manager

What it is: A managed service to store and retrieve secrets securely.

What it’s for:

	*  Store DB passwords, API keys, tokens.
	*  Rotate secrets automatically (optional).
	*  Control access with IAM and audit usage.

Key ideas:</description>
    </item>
    <item rdf:about="https://wiki.quizz.vn/doku.php?id=aws:security:ssm-parameter-store&amp;rev=1766904984&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2025-12-28T06:56:24+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>ssm-parameter-store</title>
        <link>https://wiki.quizz.vn/doku.php?id=aws:security:ssm-parameter-store&amp;rev=1766904984&amp;do=diff</link>
        <description>SSM Parameter Store

What it is: A feature of AWS Systems Manager to store configuration data and secrets as parameters.

What it’s for:

	*  Store app configs (URLs, flags) and secrets (passwords) securely.
	*  Provide a central place to manage environment variables.</description>
    </item>
</rdf:RDF>
