Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  1. Set up the SSO session:
    aws configure sso-session
  2. Enter the required details:
    • SSO session name: my-org-sso (choose a memorable name)
    • SSO start URL: https://d-9067c5bbc5.awsapps.com/start/#
    • SSO region: us-east-1 
    • SSO registration scopes: sso:account:access

...

For multiple accounts/roles, you can manually edit ~/.aws/config:

ini

[sso-session my-org-sso]
sso_region = us-east-1
sso_start_url = $LINKhttps://d-9067c5bbc5.awsapps.com/start/#

[profile dev-account]
sso_session = my-org-sso
sso_account_id = 111122223333
sso_role_name = Project-Power-User
region = us-east-1
output = json

[profile prod-account]
sso_session = my-org-sso
sso_account_id = 444455556666
sso_role_name = Project-Read-Only
region = us-east-1
output = json

Using SSO-Configured Profiles

...