2 Answers
- Newest
- Most votes
- Most comments
0
you can choose to delegate administration of IAM Identity Center to a member account in AWS Organizations
Enabling delegated administration provides the following benefits:
- Minimizes the number of people who require access to the management account to help mitigate security concerns
- Allows select administrators to assign users and groups to applications and to your organization's member accounts
https://docs.aws.amazon.com/singlesignon/latest/userguide/delegated-admin.html
0
Looks like, AMG Workspaces only supports Org's managed account's IAM Identity Center for Auth not any account scoped instance, per my testing.
answered a year ago
Relevant content
- asked 2 years ago
- asked a month ago
- asked 6 months ago
The question still remains that for AMG Workspaces SSO, does IAM Identity Center must be in a managed/delegated account or it can be in any other account in the Org?