- IAM Identity Center now lets customer‑managed applications act as trusted token issuers to discover user accounts/roles and retrieve temporary credentials programmatically.
- Users signed in via an external IdP can access assigned AWS accounts without an extra sign‑in prompt, removing redundant authentication.
- Admins must explicitly enable AWS account access per application; the feature is available in all commercial, GovCloud, and China regions.
Community impact
Community ratings: 0 Useful, 0 Noise, 0 Risky, 0 Broke, 0 Try.