...
- Set up the SSO session:
aws configure sso-session - Enter the required details:
- SSO session name:
my-org-sso(choose a memorable name) - SSO start URL: https://d-9067c5bbc5.awsapps.com/start/#
- SSO region:
us-east-1 - SSO registration scopes:
sso:account:access
- SSO session name:
...
For multiple accounts/roles, you can manually edit ~/.aws/config:
ini
[sso-session my-org-sso]
sso_region = us-east-1
sso_start_url = $LINKhttps://d-9067c5bbc5.awsapps.com/start/#
[profile dev-account]
sso_session = my-org-sso
sso_account_id = 111122223333
sso_role_name = Project-Power-User
region = us-east-1
output = json
[profile prod-account]
sso_session = my-org-sso
sso_account_id = 444455556666
sso_role_name = Project-Read-Only
region = us-east-1
output = jsonUsing SSO-Configured Profiles
...