Skip to main content

A user-browser driven SAML authentication tool for AWS

Project description

Google SAML Auth

This is a utility to obtain temporary Amazon Web Services (AWS) Security Token Service (STS) credentials for use on the local Command Line Interface (CLI).

This is an enhancement on the popular AWS Google Auth application, which uses a requests library to authenticate to Google before authenticating to AWS via SAML.

This application works similarly, however bypasses the need to authenticate into Google by using the user's existing Google web browser session to post the SAML assertion used for AWS authentication back to this application via local HTTP callback.

Getting Started

This project relies on Python (specifically, we've only tested on Python 3). Please first install Python3 using Brew

brew install python

You'll then need to configure profiles to use in your ~/.aws/config file. An example below:


[profile profile-name]
region = ap-southeast-2
account = 453559030913
google_config.google_idp_id = C01g1l5do
google_config.role_name = assumed-ins-tech-lead
google_config.google_sp_id = 705835944086

Running the application

Ready? Start the app with the following command

python3 google-saml-auth.py --profile profile-name

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

aws-google-saml-2023.1014.12.tar.gz (7.4 kB view details)

Uploaded Source

File details

Details for the file aws-google-saml-2023.1014.12.tar.gz.

File metadata

  • Download URL: aws-google-saml-2023.1014.12.tar.gz
  • Upload date:
  • Size: 7.4 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/4.0.2 CPython/3.10.13

File hashes

Hashes for aws-google-saml-2023.1014.12.tar.gz
Algorithm Hash digest
SHA256 f601c13924f5bba19cad5cfae32701fc67feba38f1f895c188692ae64338684b
MD5 048188b751f5f7bd9836e23a4aaf4e6d
BLAKE2b-256 c4478282f28cb07b781942f23e4b415a95e392190c92109739ba22fd2830d515

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page