How it works...
When you enable the AWS SSO service from the console, we allow AWS SSO to create roles for each of our AWS Organization member accounts. We also allow each of our AWS Organization member accounts to provide applications access to AWS SSO users.
We used an identity source as AWS SSO. We can also select the Active Directory or External identity provider options. With the Active Directory option, we can use AWS Managed Microsoft AD, or our existing Active Directory using AWS Managed Microsoft AD or AD Connector. With the External identity provider option, we can manage users, groups, credentials, MFA, and more with an external identity provider. With the AWS SSO and Active Directory options, users sign in through the AWS SSO ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access