How do you make 2FA work on both an AWS account and an Amazon consumer account?

1

The scenario:

  • Both my Amazon consumer account (the one I use when I log in to amazon.com to buy stuff) and my AWS root account use the same email address.
  • 2FA can be enabled on both the Amazon consumer account and the AWS root account independently.

When 2FA is enabled on both amazon.com and AWS, this is the behavior:

  • Logging into amazon.com requires the TOTP configured for the MFA device connected to the Amazon consumer account. This is expected.
  • Logging into the AWS console with the root account requires both the TOTP from the MFA device connected to the Amazon consumer account, and the TOTP from the MFA device connected to the AWS root account. Each TOTP is asked for one after the other, with different web pages. Only when both are entered can you proceed to the console. This is unexpected.

When 2FA is enabled on only the AWS root account, this is the behavior:

  • Logging into the AWS console with the root account requires only the TOTP from the MFA device connected to the AWS root account. This is expected.
  • Logging into the Amazon consumer account requires the TOTP from the MFA device connected to the AWS root account. This is unexpected.

How do I set up 2FA on both accounts and have them be independent of the other account? This behavior is bizarre.

amoffat
질문됨 2년 전103회 조회
답변 없음

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.

질문 답변하기에 대한 가이드라인

관련 콘텐츠