Maintained with ☕️ by
IcePanel logo

IAM Identity Center extends sessions and TIP management capabilities for customers with Microsoft AD

Share

Services

AWS IAM Identity Center enhanced its [session management](https://aws.amazon.com/about-aws/whats-new/2022/10/iam-identity-center-session-management-features-improved-user-experience-cloud-security/) and [trusted identity propagation (TIP)](https://docs.aws.amazon.com/singlesignon/latest/userguide/trustedidentitypropagation-overview.html) capabilities for customers that connect Microsoft Active Directory (AD) as their identity source. The enhanced capabilities help customers manage user sessions, scale their use of AWS applications, such as Amazon Q Developer Pro, and implement use cases, such as for analytics, with trusted identity propagation. With this release, customers who connect Microsoft AD to IAM Identity Center will be able to: (a) configure the session duration for AWS applications and the AWS access portal from a minimum of 15 minutes to a maximum of 90 days; (b) list and delete active user sessions; (c) configure an extended 90-day session duration for Amazon Q Developer Pro, while maintaining shorter session duration for other AWS applications; and (d) enable TIP from business intelligence applications that authenticate users via a third party identity provider to AWS services, such as Amazon Redshift and Amazon Q Business. IAM Identity Center is the recommended service for managing workforce access to AWS applications and multiple AWS accounts. It enables you to connect your existing source of workforce identities to AWS once and offer your users single sign on experience across AWS. It powers the personalized experiences offered by AWS applications, such as Amazon Q; and the ability to define and audit user-aware access to data in AWS services, such as Amazon Redshift. It helps you manage access to multiple AWS accounts from a central place. IAM Identity Center is available at no additional cost in these [AWS Regions](https://aws.amazon.com/about-aws/global-infrastructure/regional-product-services/). Learn more[ here](https://aws.amazon.com/iam/identity-center/).