- Newest
- Most votes
- Most comments
Turns out, I can do this using AWS Single Sing On (SSO).
From the AWS SSO info page: [https://aws.amazon.com/single-sign-on/]
AWS Single Sign-On (AWS SSO) is where you create, or connect, your workforce identities in AWS once and manage access centrally across your AWS organization. You can choose to manage access just to your AWS accounts or cloud applications. You can create user identities directly in AWS SSO, or you can bring them from your Microsoft Active Directory or a standards-based identity provider, such as Okta Universal Directory or Azure AD.
AWS SSO is the best way to manage users on multi account. If you can't use it or your organization not having AD is enough small, you try cross account switch role with IAM Role. Keep in mind that you need create IAM Role permissions in the new AWS account.
https://docs.aws.amazon.com/IAM/latest/UserGuide/tutorial_cross-account-with-roles.html
Relevant content
- asked 3 years ago
- asked 2 years ago
- AWS OFFICIALUpdated 4 months ago
- AWS OFFICIALUpdated 4 years ago
- AWS OFFICIALUpdated 10 months ago
- AWS OFFICIALUpdated 3 years ago