AWS Secrets Engine - Dynamic and Static Credentials
Configure the AWS secrets engine in Vault to generate dynamic IAM credentials and manage static credential rotation.

Lab Overview
Configure the AWS secrets engine in Vault to generate dynamic IAM user credentials, STS AssumeRole credentials, and manage static IAM credential rotation
What You'll Learn
Configure the AWS secrets engine with root credentials and lease settings
Generate dynamic IAM user credentials with custom permissions
Generate temporary STS AssumeRole credentials using Vault
Configure and manage static IAM credential rotation with Vault
Prerequisites
Completion of Vault CLI Basics lab
AWS account access
Understanding of IAM concepts
Technologies Covered
Part of a Course
This lab is part of the HashiCorp Vault Associate 003 Certification course
View All CoursesChoose your plan
Simple, Transparent Pricing
Unlock full access to TeKanAid courses, labs, and bootcamps
Pro
Course content without labs
Renews automatically. Cancel anytime.
Final price verified at checkout.
- Full access to all courses
- Progress tracking
- Certificate of completion
- Community access
- Bootcamp participation
- New content access
Premium
Full access with hands-on labs
Renews automatically. Cancel anytime.
Final price verified at checkout.
- Everything in Pro
- Unlimited hands-on labs
- Lab AI Assistant
- Accelerator bootcamps with live office hours
- Priority support
Prefer a single course?
Purchase individual courses for a one-time fee of $79. Full access to course content, quizzes, certificates, and community features, lab access is not included.
Browse CoursesTry it free, no credit card
Three free ways to start. All bridge into the paid Premium catalog when you're ready.
Not ready to commit? The crash course is email-only. No academy account required.
Ready to Get Started?
Start this hands-on lab and build real-world Platform Engineering skills
Get Access Now