Skip to content

AWS SSO

leverage-aws-sso

Figure: AWS Organization with SSO diagram. (Source: binbash Leverage, "Leverage Reference Architecture components", binbash Leverage Doc, accessed January 4th 2022).

SSO Strengths

  • 100% cloud-based
  • Secure directory services
  • Unified device management
  • SSO and user lifecycle management
  • Secure app and server authentication with cloud LDAP
  • Event logging, reporting, and monitoring

SSO Groups

Account / Groups Administrators DevOps FinOps SecurityAuditors
Management x x x x

Consideration

This definition could be fully customized based on the project specific needs

SSO Permission Sets (w/ Account Associations)

Account / Permission Sets Administrator DevOps FinOps SecurityAuditors
Management x x
Security x x x
Shared x x x
Network x x x
Apps-DevStg x x x
Apps-Prd x x x

Considerations

  1. Developers could have their specific SSO Group + Permission Set policy association.
  2. This definition could be fully customized based on the project specific needs