Applications need to call cloud APIs too: a web server reads from object storage, a function writes to a queue, a pipeline deploys infrastructure. The old way was to create a user, generate a long-lived access key and put it in a configuration file or environment variable. Those keys leak constantly, through code committed to public repositories, container images, logs and backups, and they often stay valid for years.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 3 more sections, 5 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.