IAM Instance Role: Least-Privilege S3 Access from EC2
Create an EC2 instance role in a single lab account, grant least-privilege S3, and prove the lab user cannot PutObject without the role.
Difficulty: Intermediate · Duration: 2 hours
AWS services: IAM, S3, EC2