From the course: Complete Guide to AWS Security and Compliance Management

Unlock the full course today

Join today to access over 24,900 courses taught by industry experts.

Understanding federated access

Understanding federated access

- [Instructor] Allowing non-AWS users the ability to access resources in your AWS account is an important capability to consider when planning your organization's approach to user security. The modern business integrates many different applications to maintain employee productivity. If you have an existing identity management system, you may want to grant people from your existing authentication store delegated access to your AWS account. Let's explore how to set up federated access. Federated, or externally authenticated, users can come from a variety of sources. There are many external entities you may want to federate with. For instance, you may have an on-premises authentication system, like a local Microsoft Active Directory. You may want to federate with other AWS accounts that you own or those belonging to partners you work with. Using a web identity provider, such as Amazon Cognito, Meta's Facebook, or Google, is a common use case for federation. Basically, if an identity…

Contents