<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>SAML &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/tag/saml/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Thu, 16 May 2024 16:57:51 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>How to set up SAML federation in Amazon Cognito using IdP-initiated single sign-on, request signing, and encrypted assertions</title>
		<link>https://noise.getoto.net/2024/05/16/how-to-set-up-saml-federation-in-amazon-cognito-using-idp-initiated-single-sign-on-request-signing-and-encrypted-assertions/</link>
		
		<dc:creator><![CDATA[Vishal Jakharia]]></dc:creator>
		<pubDate>Thu, 16 May 2024 16:57:51 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[Amazon Cognito]]></category>
		<category><![CDATA[authentication]]></category>
		<category><![CDATA[OAuth2]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=911d8b056a8aaf0abde84fae1f3709ba</guid>

					<description><![CDATA[When an identity provider (IdP) serves multiple service providers (SPs), IdP-initiated single sign-on provides a consistent sign-in experience that allows users to start the authentication process from one centralized portal or dashboard. It helps administrators have more control over the authentication process and simplifies the management. However, when you support IdP-initiated authentication, the SP (Amazon […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to monitor the expiration of SAML identity provider certificates in an Amazon Cognito user pool</title>
		<link>https://noise.getoto.net/2023/05/01/how-to-monitor-the-expiration-of-saml-identity-provider-certificates-in-an-amazon-cognito-user-pool/</link>
		
		<dc:creator><![CDATA[Karthik Nagarajan]]></dc:creator>
		<pubDate>Mon, 01 May 2023 19:22:10 +0000</pubDate>
				<category><![CDATA[Amazon Cognito]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=80d508c3b01f0783d2825bcdcf8262aa</guid>

					<description><![CDATA[With Amazon Cognito user pools, you can configure third-party SAML identity providers (IdPs) so that users can log in by using the IdP credentials. The Amazon Cognito user pool manages the federation and handling of tokens returned by a configured SAML IdP. It uses the public certificate of the SAML IdP to verify the signature […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Just-in-Time user provisioning explained</title>
		<link>https://noise.getoto.net/2023/03/15/just-in-time-user-provisioning-explained/</link>
		
		<dc:creator><![CDATA[Evgeny Yurchenko]]></dc:creator>
		<pubDate>Wed, 15 Mar 2023 12:05:37 +0000</pubDate>
				<category><![CDATA[How-to]]></category>
		<category><![CDATA[JIT]]></category>
		<category><![CDATA[LDAP]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Technical]]></category>
		<guid isPermaLink="false">https://blog.zabbix.com/?p=25515</guid>

					<description><![CDATA[Zabbix 6.4 finally brings a very much waited feature called “Just-In-Time user provisioning”. Zabbix “What’s new in 6.4” LDAP/SAML…]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Zabbix 6.4 is out now!</title>
		<link>https://noise.getoto.net/2023/03/07/zabbix-6-4-is-out-now/</link>
		
		<dc:creator><![CDATA[Arturs Lontons]]></dc:creator>
		<pubDate>Tue, 07 Mar 2023 13:43:11 +0000</pubDate>
				<category><![CDATA[data collection]]></category>
		<category><![CDATA[JIT]]></category>
		<category><![CDATA[LDAP]]></category>
		<category><![CDATA[news]]></category>
		<category><![CDATA[proxies]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[snmp]]></category>
		<category><![CDATA[What's new]]></category>
		<category><![CDATA[Zabbix 6.4]]></category>
		<guid isPermaLink="false">https://blog.zabbix.com/?p=25444</guid>

					<description><![CDATA[Zabbix team is pleased to announce the release of the latest Zabbix major version – Zabbix 6.4. The release…]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to use customer managed policies in AWS IAM Identity Center for advanced use cases</title>
		<link>https://noise.getoto.net/2022/08/15/how-to-use-customer-managed-policies-in-aws-iam-identity-center-for-advanced-use-cases/</link>
		
		<dc:creator><![CDATA[Ron Cully]]></dc:creator>
		<pubDate>Mon, 15 Aug 2022 20:49:17 +0000</pubDate>
				<category><![CDATA[AWS IAM Identity Center]]></category>
		<category><![CDATA[AWS SSO]]></category>
		<category><![CDATA[Conditions]]></category>
		<category><![CDATA[Customer Managed Policy]]></category>
		<category><![CDATA[IAM Identity Center]]></category>
		<category><![CDATA[IdP]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Permissions]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=e22ec75524a27d88adb74d62d3596125</guid>

					<description><![CDATA[Are you looking for a simpler way to manage permissions across all your AWS accounts? Perhaps you federate your identity provider (IdP) to each account and divide permissions and authorization between cloud and identity teams, but want a simpler administrative model. Maybe you use AWS IAM Identity Center (successor to AWS Single Sign-On) but are […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to automate AWS account creation with SSO user assignment</title>
		<link>https://noise.getoto.net/2022/01/25/how-to-automate-aws-account-creation-with-sso-user-assignment/</link>
		
		<dc:creator><![CDATA[Rafael Koike]]></dc:creator>
		<pubDate>Tue, 25 Jan 2022 20:52:15 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[AWS Control Tower]]></category>
		<category><![CDATA[AWS Organizations]]></category>
		<category><![CDATA[Permission sets]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[SSO]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=258b4a965ced6f56c72f50047dd1225e</guid>

					<description><![CDATA[Background AWS Control Tower offers a straightforward way to set up and govern an Amazon Web Services (AWS) multi-account environment, following prescriptive best practices. AWS Control Tower orchestrates the capabilities of several other AWS services, including AWS Organizations, AWS Service Catalog, and AWS Single Sign-On (AWS SSO), to build a landing zone very quickly. AWS […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Configure AWS SSO ABAC for EC2 instances and Systems Manager Session Manager</title>
		<link>https://noise.getoto.net/2022/01/12/configure-aws-sso-abac-for-ec2-instances-and-systems-manager-session-manager/</link>
		
		<dc:creator><![CDATA[Rodrigo Ferroni]]></dc:creator>
		<pubDate>Wed, 12 Jan 2022 20:24:51 +0000</pubDate>
				<category><![CDATA[ABAC]]></category>
		<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[Attributes]]></category>
		<category><![CDATA[AWS Single Sign-On]]></category>
		<category><![CDATA[AWS Single Sign-On (SSO)]]></category>
		<category><![CDATA[AWS SSO]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Tags]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=1cd4f293537530e997bda5d967430b43</guid>

					<description><![CDATA[In this blog post, I show you how to configure AWS Single Sign-On to define attribute-based access control (ABAC) permissions to manage Amazon Elastic Compute Cloud (Amazon EC2) instances and AWS Systems Manager Session Manager for federated users. This combination allows you to control access to specific Amazon EC2 instances based on users’ attributes. I show […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Authenticate AWS Client VPN users with AWS Single Sign-On</title>
		<link>https://noise.getoto.net/2021/08/30/authenticate-aws-client-vpn-users-with-aws-single-sign-on/</link>
		
		<dc:creator><![CDATA[Sylvia Qi]]></dc:creator>
		<pubDate>Mon, 30 Aug 2021 17:27:22 +0000</pubDate>
				<category><![CDATA[AWS Client VPN]]></category>
		<category><![CDATA[AWS Single Sign-On]]></category>
		<category><![CDATA[AWS Single Sign-On (SSO)]]></category>
		<category><![CDATA[Hybrid connectivity]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Networking & Content Delivery*]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[vpn]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=4061ee658d504974b38d6a6cbb1112a1</guid>

					<description><![CDATA[AWS Client VPN is a managed client-based VPN service that enables users to use an OpenVPN-based client to securely access their resources in Amazon Web Services (AWS) and in their on-premises network from any location. In this blog post, we show you how you can integrate Client VPN with your existing AWS Single Sign-On via […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Configure SAML single sign-on for Kibana with AD FS on Amazon Elasticsearch Service</title>
		<link>https://noise.getoto.net/2021/07/09/configure-saml-single-sign-on-for-kibana-with-ad-fs-on-amazon-elasticsearch-service/</link>
		
		<dc:creator><![CDATA[Sajeev Attiyil Bhaskaran]]></dc:creator>
		<pubDate>Fri, 09 Jul 2021 20:10:35 +0000</pubDate>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Amazon Elasticsearch Service]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Kibana]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Single sign-on]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=7cd5e2a5f7bd811c0735879058bdc9ef</guid>

					<description><![CDATA[It’s a common use case for customers to integrate identity providers (IdPs) with Amazon Elasticsearch Service (Amazon ES) to achieve single sign-on (SSO) with Kibana. This integration makes it possible for users to leverage their existing identity credentials and offers administrators a single source of truth for user and permissions management. In this blog post, […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Build an end-to-end attribute-based access control strategy with AWS SSO and Okta</title>
		<link>https://noise.getoto.net/2021/07/06/build-an-end-to-end-attribute-based-access-control-strategy-with-aws-sso-and-okta/</link>
		
		<dc:creator><![CDATA[Louay Shaat]]></dc:creator>
		<pubDate>Tue, 06 Jul 2021 16:42:08 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[AWS Single Sign-On (SSO)]]></category>
		<category><![CDATA[AWS SSO]]></category>
		<category><![CDATA[Conditions]]></category>
		<category><![CDATA[Distributed teams]]></category>
		<category><![CDATA[Identity providers]]></category>
		<category><![CDATA[IdP]]></category>
		<category><![CDATA[Okta]]></category>
		<category><![CDATA[Permissions]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Tags]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=b89faf602dff8971f9bf7c339ef7d9c2</guid>

					<description><![CDATA[This blog post discusses the benefits of using an attribute-based access control (ABAC) strategy and also describes how to use ABAC with AWS Single Sign-On (AWS SSO) when you’re using Okta as an identity provider (IdP). Over the past two years, Amazon Web Services (AWS) has invested heavily in making ABAC available across the majority […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Building fine-grained authorization using Amazon Cognito, API Gateway, and IAM</title>
		<link>https://noise.getoto.net/2021/05/21/building-fine-grained-authorization-using-amazon-cognito-api-gateway-and-iam/</link>
		
		<dc:creator><![CDATA[Artem Lovan]]></dc:creator>
		<pubDate>Fri, 21 May 2021 19:22:59 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[Amazon API Gateway]]></category>
		<category><![CDATA[Amazon Cognito]]></category>
		<category><![CDATA[Amazon DynamoDB]]></category>
		<category><![CDATA[authorization]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[custom authorizer]]></category>
		<category><![CDATA[JWT]]></category>
		<category><![CDATA[Oauth]]></category>
		<category><![CDATA[RBAC]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Token]]></category>
		<category><![CDATA[апи]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=bca00f935848a7b631a841ad8138449b</guid>

					<description><![CDATA[June 5, 2021: We’ve updated Figure 1: User request flow. Authorizing functionality of an application based on group membership is a best practice. If you’re building APIs with Amazon API Gateway and you need fine-grained access control for your users, you can use Amazon Cognito. Amazon Cognito allows you to use groups to create a […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to delegate management of identity in AWS Single Sign-On</title>
		<link>https://noise.getoto.net/2021/03/04/how-to-delegate-management-of-identity-in-aws-single-sign-on/</link>
		
		<dc:creator><![CDATA[Louay Shaat]]></dc:creator>
		<pubDate>Wed, 03 Mar 2021 23:42:32 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS Single Sign-On (SSO)]]></category>
		<category><![CDATA[Conditions]]></category>
		<category><![CDATA[Delegation]]></category>
		<category><![CDATA[Distributed teams]]></category>
		<category><![CDATA[Identity providers]]></category>
		<category><![CDATA[IdP]]></category>
		<category><![CDATA[Permissions]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Sessions]]></category>
		<category><![CDATA[Tags]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=15b162dbe9d04b81666dd6658290e33f</guid>

					<description><![CDATA[In this blog post, I show how you can use AWS Single Sign-On (AWS SSO) to delegate administration of user identities. Delegation is the process of providing your teams permissions to manage accounts and identities associated with their teams. You can achieve this by using the existing integration that AWS SSO has with AWS Organizations, […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 54/320 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2025-12-07 06:38:13 by W3 Total Cache
-->