AWS Resource Access Manager (RAM)
Explore how AWS Resource Access Manager allows you to securely share resources such as Aurora instances across multiple AWS accounts. Understand how resource shares are created using resources, principals, and managed permissions. Discover benefits like reduced overhead, enhanced security through unified policies, and usage visibility via CloudWatch integration.
We'll cover the following...
AWS Resource Access Manager (RAM) is a service that allows us to securely share AWS resources over multiple AWS accounts. These accounts can be within the same organization or different organizations. Through this, we can create a resource in one account and then access this resource from different accounts rather than creating the same resource multiple times over various accounts.
Resource share in AWS RAM
In AWS RAM, resources are shared by creating a resource share. A resource share consists of three elements: