Competitor MappingReference node
IAM Users
Competitor mapping for Amazon Web Services.
This page is a structured knowledge reference. For step-by-step migration guidance, see the migration guide.
Details
- Provider
- Amazon Web Services
- Service term
- IAM Users
- Provider documentation
- External reference
Behavioral divergences
IAM Users
Quake AI concept: Authentication
- AWS IAM Users are tied exclusively to one AWS account with no native multi-account scoping without Organizations; OpenStack users exist in domains and get scoped to multiple projects via role assignments, allowing flexible multi-tenancy within a deployment.
- AWS emphasizes long-term credentials like access keys/passwords but strongly recommends federation/temporary creds for humans; OpenStack uses short-lived, scoped tokens natively.
- Naming: AWS ARNs like arn:aws:iam::ACCOUNT:user/NAME; OpenStack uses user@domain scoped to project@domain.
- API differences: AWS uses CreateUser, ListUsers in IAM API; OpenStack Keystone v3 API integrates user/project/role in assignments (e.g., POST /v3/role_assignments).
Documentation
Related
Citations
- Amazon Web Services
- Amazon Web Services
These citations record configured source URLs in the knowledge graph. They are not a live platform walk verification date.