Day-to-day operators use the cloud provider's browser console, while emergency break-glass accounts are reserved for outages. How should IAM treat these paths?
Select an answer to reveal the explanation.
Short Explanation
Everyday console logins need normal badges; the glass-break axe behind the alarm stays locked, logged, and rare. Both paths are IAM—break-glass just gets tighter controls, not a wiki password.
Full Explanation
Web portal access and emergency break-glass accounts are both identity paths into the management plane and require IAM. Break-glass identities should be tightly controlled, monitored, and used only for emergencies—not shared on wikis or left as standing unrestricted admin. Disabling routine portal access entirely is usually impractical.