Transfer across AWS Cloud partitions. Different identity planes. Long-lived IAM user credentials.
As an enterprise customer, you might need to bring together security, operational, and compliance data from multiple AWS partitions. Creating a holistic view of these types of data is critical to support operations and applications but understanding how to accomplish this while maintaining compliance can be a challenge.
In this post, we show you a past method for securing cross-partition data movement using AWS Identity and Access Management (IAM) user keys and why that’s no longer recommended. We continue by showing you the recommended best practice of using AWS IAM Roles Anywhere to support cross-partition data movement.
Security and compliance and AWS Regions and partitions
Before you begin, it’s important to understand how AWS Regions and partitions are designed. AWS partitions are hard…
https://aws.amazon.com/blogs/security/transfer-data-across-aws-partitions-with-iam-roles-anywhere/




