Single Sign-On
Single Sign-On is a cloud-based single sign-on (SSO) service that makes it easy to centrally manage SSO access to all of your AWS accounts and cloud applications.
Specifically, it helps you manage SSO access and user permissions across all your accounts in Organizations.
SSO also helps you manage access and permissions to commonly used third-party software as a service (SaaS) applications, AWS SSO-integrated applications as well as custom applications that support Security Assertion Markup Language (SAML) 2.0.
SSO includes a user portal where your end-users can find and access all their assigned AWS accounts, cloud applications, and custom applications in one place.
SSO is integrated with Microsoft AD through the AWS Directory Service - That means your employees can sign in to your AWS SSO user portal using their corporate Active Directory credentials.
Integrating AWS CLI with SSO
AWS CLI v2 integration with SSO simplifies the sign-in process.
Developers can sign in directly to the AWS CLI using the same Active Directory or SSO credentials that they normally use to sign in to SSO, and access their assigned accounts and roles.
For example, after an administrator configures AWS SSO to use Active Directory for authentication, a developer can sign into the AWS CLI directly using their Active Directory credentials.
Last updated
Was this helpful?