A mechanism that lets an external identity provider's credentials be used to access AWS resources.
It links an existing identity system with AWS authentication via SAML or OIDC. Because you don't need to create individual IAM users, it suits operation in a large organization.
© 2026 ITBGM