Security Assertion Markup Language (SAML) for Amazon.
Project description
Purpose
Access to the AWS Management Console and AWS API for my Active Directory users using federation (AD FS).
Usage
Requirements
- Linux (not tested on Windows OS, hope work)
- Python 3 - latest version 3.x
Installation
pip3 install awssaml
Configuration file
All configuration is stored in ~/.aws/config file.
Basic configuration
[samlapi]
identity_url = https://adfs.example.com/adfs/ls/IdpInitiatedSignOn.aspx?loginToRp=urn:amazon:webservices
region = eu-west-1
Advanced samlapi configuration
Default username
[samlapi]
#...
username = [SAML User]
Default session duration
Setup 12 hours (it's 43200 seconds):
[samlapi]
#...
session_duration = 43200
Keep encrypted password
To generate password, use set-samlapi-access.py script.
Application store password encrypted, using PEM certificate.
Before you use script, generate your private RSA key (more info)
> python3 set-samlapi-access.py
Full path to your PEM file: <full-path-to-your-file>.pem
Username: <SAML User>
Password:
Configuration updated.
Advanced profile configuration
You can setup custom profiles to reuse. Sample configuration entry for profile:
[profile nonprod-application1]
role_arn = arn:aws:iam::[ID]:role/[role]
principal_arn = arn:aws:iam::[ID]:saml-provider/[provider]
source_profile = nonprod
session_duration = 43200
Usage:
> awssaml api nonprod-application1
> awssaml console nonprod-application1
Reference
Project details
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distributions
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file awssaml-0.0.14-py2.py3-none-any.whl.
File metadata
- Download URL: awssaml-0.0.14-py2.py3-none-any.whl
- Upload date:
- Size: 13.1 kB
- Tags: Python 2, Python 3
- Uploaded using Trusted Publishing? No
- Uploaded via: twine/1.14.0 pkginfo/1.5.0.1 requests/2.22.0 setuptools/41.2.0 requests-toolbelt/0.9.1 tqdm/4.35.0 CPython/3.7.3
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
8a70d44d1a9a0b4ff88d3f35b81be0cc1313f979a0036303771db7a55beb4501
|
|
| MD5 |
484eb976fe45249497cf77802c803946
|
|
| BLAKE2b-256 |
5b11dc8c433b7bf17837af3be7e8ded05f63a481f058b4aca52bdfd1e1703e51
|