Skip to content

Awssso

Basics

  • Centrally manage SSO access & user permissions for all accounts managed using AWS Organizations
  • It also supports SSO for external applications
  • It consists of Identity Store. The product supports different types of identity stores
  • Built In Store
  • AWS Managed MS AD using director service product
  • On Premises MS AD using 2-way trust or AD Connector
  • External Identity Provider using SAML2.0
  • SSO is preferred by AWS for workforce identity federation vs traditional approaches
  • For Customer or Web identities SSO is not the right product.
  • Product is free & there are no charges to using SSO