Identity Federation refers to the ability to accept users that were not authenticated in your systems (such as AWS STS). SSO is the ability to login in once and then access many applications without needing to enter credentials again. It is possible to achieve SSO through federation (AWS SAML support : http://docs.aws.amazon.com/STS/latest/UsingSTS/CreatingSAML.html). But you can have SSO without federation. (e.g. an Active Directory domain and multiple apps in that domain)
Blog posts to help enterprises run applications in the cloud. Entries on cloud migrations as Fortune 1000 companies embark on migrating to the cloud.
Showing posts with label SSO. Show all posts
Showing posts with label SSO. Show all posts
Sunday, March 30, 2014
Tuesday, May 7, 2013
AWS SSO integration with AWS
This is a question that comes up quite often, "How can I delegate authentication into my on premise MS AD for AWS users?" This product has just been released.
SSO integration with AWS
They were also showcased in Andy’s keynote on Tuesday at the SF AWS Summit.
The other option is to use AWS STS: http://docs.aws.amazon.com/STS/latest/UsingSTS/Welcome.html
Labels:
active directory,
AD,
authentication,
authorization,
aws,
groups,
iam,
ldap,
microsoft,
ms,
roles,
security,
sign on,
single,
SSO,
users
Subscribe to:
Posts (Atom)