IdentityFederation Flashcards
Define Identity Federation
The process of swapping or exchanging external identities for AWS Credentials
AWS Resources can be accessed by which trusted identities?
AWS resources can ONLY be accessed by AWS Identities or Trusted Authenticated identities
Identity provider can only be used with ____________ compatible provider
Identity provider can only be used with SAML 2.0 compatible provider.
It MUST be used with an infrastructure already using SAML 2.0 compatible provider
Google, Twitter, Facebook, Web are good examples of _______________2.0_____________
INCOMPATIBLE identity source
SAML 2.0 Validity
up to 12hrs with AWS
SAML Asertion
Token from an IDP that’s to be presented to the CLI or SDK during Auth and Auth.
SAML (Security Assertion Markup Language) assertion is a digital statement or assertion that is issued by an identity provider (IdP) and presented to a service provider (SP) as part of a SAML-based single sign-on (SSO) or authentication process. SAML assertions are a crucial component of SAML-based authentication and authorization.