You can choose to use IAM for database user authentication by simply selecting a checkbox during the DB instance creation process. Existing DB instances can also be modified to enable IAM authentication. Once enabled, database administrators associate new and existing database users to IAM users and roles. After that, credentials can be managed via IAM, without needing to manage users in the database. This includes expanding and restricting permission levels, associating permissions with different roles, and revoking access. IAM authentication also allows easier and safer integration with your applications running on EC2.