Skip to content

AWS::SSO::Instance

"IAM Identity Center" is the successor to "AWS Single Sign-On" (SSO)

  • Log once and have access to multiple accounts. Allow access to multiple account at once
  • Allows centralized auditing with Cloudtrail
  • You can create only one instance per account and across all AWS Regions.

SSO

IdPs

  • SAML 2.0
  • AD
  • ...

SSO vs. AssumeRoleWithSAML

SSO vs. SAML

Properties

Type: AWS::SSO::Instance
Properties:
  Name: String
  Tags:
    - Tag