Nike-Inc / gimme-aws-creds

A CLI that utilizes Okta IdP via SAML to acquire temporary AWS credentials
Apache License 2.0
925 stars 263 forks source link

Update README with notice about Authentication Policies for OIE #421

Closed epierce closed 1 year ago

epierce commented 1 year ago

Description

The okta-aws-cli project on GitHub notes that in OIE the OIDC native app should have equivalent policies to the AWS Account Federation app(s) or else more stringent policies on the AWS app(s) may result in a 400 Bad Request error:

https://github.com/okta/okta-aws-cli#recommendations

Related Issue

420

Types of changes

Checklist: