AWS SSO OIDC MCP Server Integration
The AWS IAM Identity Center OIDC API, formerly known as AWS Single Sign-On, is a foundational web service provided by Amazon Web Services that enables client applications—ranging from command-line tools like the AWS CLI to custom native desktop and mobile applications—to register themselves with IAM Identity Center and obtain short-lived user access tokens through an OpenID Connect authentication flow. At its core, the API exposes three critical endpoints: POST /client/register, which allows applications to register as OIDC clients and receive a unique client ID and client secret; POST /device_authorization, which initiates a device code flow by issuing a device code and user code pair along with a verification URI for the end user to authenticate via a browser; and POST /token, which exchanges a valid authorization code or device code for an access token (and optionally a refresh token) that grants the client scoped access to AWS accounts and assigned permissions. This service is indispensable in enterprise environments where organizations manage workforce identities centrally through IAM Identity Center, federating access across multiple AWS accounts, SaaS applications, and custom line-of-business tools. Typical use cases include enabling single sign-on for developer workstations accessing multiple AWS accounts, powering CLI-based automation scripts that need to operate under a user's delegated permissions, and integrating third-party applications with corporate identity providers such as Azure AD, Okta, or Ping Identity through the SAML-to-OIDC bridge that IAM Identity Center provides.
Technical Integration & Multi-Client Support
The AWS SSO OIDC MCP Integration translates REST paths, operational endpoints, and tool schemas into standardized Model Context Protocol JSON-RPC 2.0 messages. This allows AI assistants like Claude Desktop, Cursor IDE, VS Code (Cline/Roo Code), and Zed Editor to run tool queries and execute functions seamlessly.
Add stdio configuration block to claude_desktop_config.json.
Configure workspace root at .cursor/mcp.json or Settings -> MCP.
Insert server JSON payload into cline_mcp_settings.json.
Specification & Compatibility Table
| Property | Specification Detail |
|---|---|
| Target Integration | AWS SSO OIDC (amazonaws-com-sso-oidc) |
| Directory Category | cloud infrastructure |
| Protocol Spec | JSON-RPC 2.0 (stdio) |
| Canonical Path | /mcp/amazonaws-com-sso-oidc/ |
Frequently Asked Questions
How do I access the full JSON configuration for AWS SSO OIDC?
Click 'Open Full AWS SSO OIDC MCP Config' above to view the complete parameter schema, environment variable setup, and copy-pasteable JSON configs for Claude Desktop, Cursor, and VS Code.
Does AWS SSO OIDC require authentication secrets?
Authentication depends on upstream API requirements. Check the environment variable table on the detail page to view required API keys and header tokens.
Related Integrations
Supabase API MCP
Manage Supabase projects, databases, authentication, and storage through your AI agent.
Cloudflare API MCP
Manage Cloudflare DNS, CDN, Workers, and security settings through your AI agent.
Vercel API MCP
Deploy projects, manage domains, and monitor deployments through your AI agent.
DigitalOcean API MCP
The DigitalOcean API is a comprehensive, RESTful interface provided by DigitalOcean, a leading cloud infrastructure provider focused on simplifying cloud computing for developers, startups, and enterprises. It serves as the programmatic backbone for managing the entire DigitalOcean ecosystem, enabling users to provision, configure, and control cloud resources such as Droplets (virtual private servers), Kubernetes clusters, managed databases, networks, storage volumes, and application platforms. Core capabilities include full lifecycle management of these resources, from creation and scaling to monitoring and deletion, mirroring the functionality available in the DigitalOcean control panel. Its primary use cases range from automating infrastructure setup for CI/CD pipelines and enabling infrastructure-as-code practices to supporting dynamic application scaling and resource optimization for SaaS products, e-commerce sites, and development environments. The API is designed for both developers seeking to automate their cloud operations and businesses that require programmable, scalable cloud infrastructure without the complexity of larger hyperscale providers.
More in Cloud Infrastructure
Browse by Category
Explore MCP server integrations organized by platform and use case.