Share via

How do I pass Authentication Method Reference from Azure/Entra ID to AWS Identity Center

V C 0 Reputation points
2023-11-07T16:47:07.01+00:00

I am using Azure/Entra ID as the IDP for my AWS account and federating via AWS Identity Center. I would like to pass the ‘Authentication Method Reference’ from Azure to Identity Center as a Session tag to be able to use MFA status to protect resources in AWS.

Azure allows passing Claim tokens in the SAML token but I don’t see these in the session. Also, there doesn’t seem to be any mechanism for passing the authnmethodsreferences attribute as a session tag / claim in the SAML token.

Any suggestions ?

Microsoft Security | Microsoft Entra | Microsoft Entra ID

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.