AWS Service Catalog now supports wildcards in IAM principal name associations
Share
Services
AWS Service Catalog now supports granting portfolio access to IAM principal (user, group or role) names with wildcards, such as ‘\*’ or ‘?’. This enables flexible and efficient sharing of infrastructure-as-code templates for customers using wildcard patterns to cover multiple IAM principal names at a time. Previously, customers had to use the exact IAM principal names to share a portfolio. Customers using AWS IAM Identity Center (successor to AWS Single Sign-On) can now quickly grant their workforce users access to Service Catalog portfolio products.
Service Catalog administrators often use portfolios in a central account to organize their Service Catalog products and then share those portfolios within their AWS Organization. With today’s launch, customers can now use “\*” or “?” wildcards to associate multiple IAM principal names that match a pattern (for example, role/developer\_? will match developer\_1, and developer\_n). After associating IAM principal names to portfolios, administrators can then share these associations along with the portfolios in their AWS Organizations using [Organizational Principal Name Sharing](https://aws.amazon.com/about-aws/whats-new/2022/11/aws-service-catalog-sharing-principal-names-portfolio-organization/). Together, these features facilitate automatic shared portfolio access to a specific group of IAM principals across thousands of accounts. Customers using AWS Identity Center can use the “role/AWSReservedSSO\_{Policyname}\_\*” pattern to give their workforce users access to shared AWS Service Catalog products.
This new feature is available via the AWS API, AWS Command Line Interface (AWS CLI), and the Service Catalog console across all [AWS Regions](https://aws.amazon.com/about-aws/global-infrastructure/regional-product-services/) where Service Catalog is available.
To learn more about wildcard principal name association, visit the Service Catalog [Developer Guide](https://docs.aws.amazon.com/servicecatalog/latest/dg/API%5FAssociatePrincipalWithPortfolio.html).
What else is happening at Amazon Web Services?
Amazon AppStream 2.0 users can now save their user preferences between streaming sessions
December 13th, 2024
Services
Share
AWS Elemental MediaConnect Gateway now supports source-specific multicast
December 13th, 2024
Services
Share
Amazon EC2 instances support bandwidth configurations for VPC and EBS
December 13th, 2024
Services
Share
AWS announces new AWS Direct Connect location in Osaka, Japan
December 13th, 2024
Services
Share
Amazon DynamoDB announces support for FIPS 140-3 interface VPC and Streams endpoints
December 13th, 2024
Services
Share