Hacker News new | ask | show | jobs
by sl4yt1m3 3618 days ago
If you're running on a non-EC2 instance, that's correct.

However, I could imagine a use case wherein you need to provide a user with a small, locked down set of permissions to your AWS account. If that were the case, you could spin up a jump host with an IAM role that guarantees they're only capable of doing exactly what you allow them to do.