スキップしてコンテンツを表示

Can we enforce the use of hardware tokens only for some users in AWS IAM identity center users?

0

Hi all

I know if administrator enables MFA, users must sign in to the AWS access portal with two factors - https://docs.aws.amazon.com/singlesignon/latest/userguide/enable-mfa.html. I'd love to enforce the use of hardware tokens only for some users in AWS IAM identity center users. Is it possible?

Thanks.

2回答
0
承認された回答

Unfortunately, it's not possible with Identity Center if you're using the IdC native directory. If you're using an external SAML-based identity provider, then MFA is handled on the identity provider side. So you'd have to look at what's supported by the identity provider.

AWS

回答済み 2年前

エキスパート

レビュー済み 1年前

0

IAM Identity Center lacks selective MFA device enforcement, but integration with an external IdP, additional Identity Center instances, or custom flows with Cognito can provide alternatives to achieve similar MFA control over selected user groups.

回答済み 2年前

  • Hi, @Basel Mohamed, can you elaborate on how to do that? Any references? Thanks.

ログインしていません。 ログイン 回答を投稿する。

優れた回答とは、質問に明確に答え、建設的なフィードバックを提供し、質問者の専門分野におけるスキルの向上を促すものです。

関連するコンテンツ