Skip to content

Latest commit

 

History

History
64 lines (40 loc) · 1.94 KB

File metadata and controls

64 lines (40 loc) · 1.94 KB

AWS IAM Identity Center

AWS IAM Identity Center (Successor to AWS Single Sign-On)
Attribute-Based Access Control (ABAC) for AWS

Identity Centeer Advantage

  • Create or connect your workforce identities only once for use across AWS.
  • Centrally manage your workforce access to multiple AWS accounts.
  • Assign user permissions based on common job functions or user attributes.
  • Provide your workforce single sign-on access to cloud applications.

Identity Center Identity Providerss

Using IAM Identity Center, you can create and manage user identities in AWS, or connect your existing identity source, including:

  • Microsoft Active Directory
  • Okta
  • Ping Identity
  • JumpCloud
  • Google Workspace
  • Azure Active Directory (Azure AD)

AWS IAM Identity Center SSO

IDC Use Case

  • Enable multi-account access to your AWS accounts
    • AWS Command Line Interface (CLI)
    • AWS SDKs
    • AWS Console Mobile Application
  • Enable single sign-on access to your AWS applications
    • Amazon SageMaker Studio
    • AWS Systems Manager Change Manager
    • AWS IoT SiteWise
  • Enable single sign-on access to Amazon EC2 Windows instances
  • Enable single sign-on access to cloud-based applications
    • Salesforce
    • Box
    • Microsoft 365

(Supporte Applications)[https://docs.aws.amazon.com/singlesignon/latest/userguide/saasapps.html] Supporte Applications highlights:

Application
Atlassian Ext. Account Lucidchart Salesforce Snowflake SumoLogic
Box GitHub Office365 SAP Spinnaker Tableau
Databricks GitLab OpsGenie ServiceNow Splunk Cloud
Datadog Jenkins PagerDuty Slack Splunk Enterprise
DocuSign Jira Quip SnarQube Statuspage