Looking oto see if it is possible to have a user do the following:

  • Log in to their Windows desktop computer using their AD credentials.
  • Navigate to the AWS SSO page and have them be automatically logged in because they are already authenticated in Windows. Is this functionality possible?
AWS IAM Identity Center (formerly AWS SSO) supports a SAML based IdP. By configuring it to a domain controller using Active Directory Federated Services and enabling Integrated Windows Authentication, you should be able to have a user logon to their desktop and not be prompted once they navigate to the AWS IAM Identity Center login page.

