Security in the storage gateway

In storage gateway, your iSCSI initiators connect your volume to the iSCSI targets. For security, storage gateway uses CHAP-based authentication to authenticate iSCSI and its initiator connection.

CHAP provides protection against playback attacks by requiring authentication to access storage volume targets. 

You can define one or more of the CHAP credentials:

Apart from this, we can use IAM for security. Here, you also have an IAM policy to define the permission needed to access the storage gateway.

Let's look at an example:

{    "Version": "2012-10-17",    "Statement": [        { "Sid": "AllowsSpecifiedActionsOnAllGateways", ...

Get Cloud Security Automation now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.