Awssso
Basics
- Centrally manage SSO access & user permissions for all accounts managed using AWS Organizations
- It also supports SSO for external applications
- It consists of Identity Store. The product supports different types of identity stores
- Built In Store
- AWS Managed MS AD using director service product
- On Premises MS AD using 2-way trust or AD Connector
- External Identity Provider using SAML2.0
- SSO is preferred by AWS for workforce identity federation vs traditional approaches
- For Customer or Web identities SSO is not the right product.
- Product is free & there are no charges to using SSO