<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Auth on IGAAWI docs</title>
    <link>/tags/auth/</link>
    <description>Recent content in Auth on IGAAWI docs</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Thu, 19 Mar 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="/tags/auth/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Authentication</title>
      <link>/infrastructure/authentication/</link>
      <pubDate>Thu, 19 Mar 2026 00:00:00 +0000</pubDate>
      <guid>/infrastructure/authentication/</guid>
      <description>&lt;h2 id=&#34;aws&#34;&gt;AWS&lt;/h2&gt;&#xA;&lt;h3 id=&#34;configure-sso&#34;&gt;Configure SSO&lt;/h3&gt;&#xA;&#xA;&#xA;&lt;div class=&#34;alert alert-warning&#34; role=&#34;alert&#34;&gt;&#xA;&lt;h4 class=&#34;alert-heading&#34;&gt;Important&lt;/h4&gt;&#xA;&#xA;    &lt;p&gt;You will need to upgrade to latest:&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;aws-vault 7.2.0,&lt;/li&gt;&#xA;&lt;li&gt;aws 2.15.38&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;And then remove old &lt;strong&gt;saritasa/v2/administrators&lt;/strong&gt; profile from the &lt;code&gt;~/.aws/config&lt;/code&gt; file, otherwise you may get crashes.&lt;/p&gt;&#xA;&#xA;&#xA;&lt;/div&gt;&#xA;&#xA;&lt;div class=&#34;highlight&#34;&gt;&lt;pre tabindex=&#34;0&#34; style=&#34;color:#4c4f69;background-color:#eff1f5;-moz-tab-size:4;-o-tab-size:4;tab-size:4;&#34;&gt;&lt;code class=&#34;language-sh&#34; data-lang=&#34;sh&#34;&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;aws configure sso&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;SSO session name &lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;(&lt;/span&gt;Recommended&lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;)&lt;/span&gt;: saritasa/v2/administrators&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;SSO start URL &lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;[&lt;/span&gt;None&lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;]&lt;/span&gt;: https://saritasa.awsapps.com/start&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;SSO region &lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;[&lt;/span&gt;None&lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;]&lt;/span&gt;: us-west-2&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;SSO registration scopes &lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;[&lt;/span&gt;sso:account:access&lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;]&lt;/span&gt;:&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;Attempting to automatically open the SSO authorization page in your default browser.&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;If the browser does not open or you wish to use a different device to authorize this request, open the following URL:&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;https://device.sso.us-west-2.amazonaws.com/&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;Then enter the code:&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;LWGS-RVJX&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;There are &lt;span style=&#34;color:#fe640b&#34;&gt;3&lt;/span&gt; AWS accounts available to you.&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;Using the account ID &lt;span style=&#34;color:#fe640b&#34;&gt;965067289393&lt;/span&gt;&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;There are &lt;span style=&#34;color:#fe640b&#34;&gt;2&lt;/span&gt; roles available to you.&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;Using the role name &lt;span style=&#34;color:#40a02b&#34;&gt;&amp;#34;saritasa-administrators-role&amp;#34;&lt;/span&gt;&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;CLI default client Region &lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;[&lt;/span&gt;None&lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;]&lt;/span&gt;: us-west-2&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;CLI default output format &lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;[&lt;/span&gt;None&lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;]&lt;/span&gt;: json&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;CLI profile name &lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;[&lt;/span&gt;saritasa-administrators-role-965067289393&lt;span style=&#34;color:#04a5e5;font-weight:bold&#34;&gt;]&lt;/span&gt;: saritasa/v2/administrators&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;To use this profile, specify the profile name using --profile, as shown:&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span style=&#34;display:flex;&#34;&gt;&lt;span&gt;aws s3 ls --profile saritasa/v2/administrators&#xA;&lt;/span&gt;&lt;/span&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/div&gt;&lt;p&gt;then modify your &lt;code&gt;~/aws/profile&lt;/code&gt; and change profile &lt;code&gt;saritasa-administrators-role-965067289393&lt;/code&gt; to match the following. Change it&amp;rsquo;s name &lt;strong&gt;saritasa/v2/administrators&lt;/strong&gt; and include &lt;code&gt;credential_process&lt;/code&gt; as shown below:&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
