Associating Identity Provider with a New IAM Role
- Print
- PDF
Associating Identity Provider with a New IAM Role
- Print
- PDF
Article summary
Did you find this summary helpful?
Thank you for your feedback
Perform the following steps (in AWS) to create a new IAM role and associate it with the Britive Identity Provider:
- Login to the AWS console with administrator privileges.
- Open the IAM console.
- Select IAM > Access Management > Roles.
- Click Create role.
- Select SAML 2.0 federation.
- In the SAML provider, select the Britive identity provider (added as explained in the section Configuring an Identity Provider in AWS). In this step, you are associating the Britive identity provider with the IAM role.
- Select Allow Programmatic access and AWS Management Console access.
- Next, the Attribute and Value fields should be populated with the following values:
- Attribute : SAML:aud.
- Value: https://signin.aws.amazon.com/saml
- Click Next: Permissions.
- From the Filter Policies, search for the required policy.
- Select the policy.
- Click Next: Tags. This is an optional step where you can add tags to the IAM role. The tags can be used to manage or track access to the role.
- Click Next: Review. The Review page is displayed.
- Enter the following values on the Review page:
- In Role name, enter an appropriate text as the name of the IAM role (64 characters limit) that can include alphanumeric characters and special characters such as @ or *.
- Enter a Role description (optional).
- Click Create Role. The new IAM role is created in AWS.
- Select the newly created IAM role from the role list. A Summary page is displayed.
Was this article helpful?