Q: 11
A company sets up an organization in AWS Organizations that contains 10AWS accounts. A solutions
architect must design a solution to provide access to the accounts for several thousand employees.
The company has an existing identity provider (IdP). The company wants to use the existing IdP for
authentication to AWS.
Which solution will meet these requirements?
Options
Discussion
Hmm, I'm thinking C but not 100 percent sure. Wouldn't D only work for resource sharing, not user authentication?
Probably C. IAM Identity Center is built exactly for this use case, where you need to federate users from an external IdP into AWS across multiple accounts. A and B don't scale well and D isn't about authentication. Pretty sure it's C but let me know if anyone disagrees.
I don’t think it’s C. A is tempting since you could tie IAM users to the IdP, even though it’s kinda clunky at scale.
Pretty sure I saw something like this on a mock, picked A.
C no doubt.
Be respectful. No spam.
Question 11 of 35