tldr/pages/common/aws-google-auth.md

21 lines
808 B
Markdown
Raw Normal View History

2019-10-03 08:59:00 +01:00
# aws-google-auth
> Acquire AWS temporary (STS) credentials using Google Apps as a federated (Single Sign-On) provider.
2019-10-03 08:59:00 +01:00
> More information: <https://github.com/cevoaustralia/aws-google-auth>.
- Log in with Google SSO using the specified [u]sername [I]DP and [S]P identifiers and set the credentials [d]uration to one hour:
2019-10-03 08:59:00 +01:00
`aws-google-auth -u {{example@example.com}} -I {{$GOOGLE_IDP_ID}} -S {{$GOOGLE_SP_ID}} -d {{3600}}`
- Log in [a]sking which role to use (in case of several available SAML roles):
2019-10-03 08:59:00 +01:00
`aws-google-auth -u {{example@example.com}} -I {{$GOOGLE_IDP_ID}} -S {{$GOOGLE_SP_ID}} -d {{3600}} -a`
- Resolve aliases for AWS accounts:
`aws-google-auth -u {{example@example.com}} -I {{$GOOGLE_IDP_ID}} -S {{$GOOGLE_SP_ID}} -d {{3600}} -a --resolve-aliases`
- Display help:
2019-10-03 08:59:00 +01:00
`aws-google-auth -h`