Overview
This integration allows you to deploy Amazon Web Services (AWS) to your users for single sign-on (SSO) via SAML from the Idira Identity User Portal.
The Idira SSO integration works by enabling Idira-federated users to assume designated AWS roles. An AWS role is an Identity and Access Management (IAM) identity that has specific permissions and can be assumed by anyone who needs it. AWS IAM roles are not associated with specific users and do not have long-term credentials such as passwords or access keys. The intent of an AWS role is to provide temporary security credentials for the role session.