Skip to content
cloud infrastructureMCP Integration Directory

AWS SSO OIDC MCP Server Integration

The AWS IAM Identity Center OIDC API, formerly known as AWS Single Sign-On, is a foundational web service provided by Amazon Web Services that enables client applications—ranging from command-line tools like the AWS CLI to custom native desktop and mobile applications—to register themselves with IAM Identity Center and obtain short-lived user access tokens through an OpenID Connect authentication flow. At its core, the API exposes three critical endpoints: POST /client/register, which allows applications to register as OIDC clients and receive a unique client ID and client secret; POST /device_authorization, which initiates a device code flow by issuing a device code and user code pair along with a verification URI for the end user to authenticate via a browser; and POST /token, which exchanges a valid authorization code or device code for an access token (and optionally a refresh token) that grants the client scoped access to AWS accounts and assigned permissions. This service is indispensable in enterprise environments where organizations manage workforce identities centrally through IAM Identity Center, federating access across multiple AWS accounts, SaaS applications, and custom line-of-business tools. Typical use cases include enabling single sign-on for developer workstations accessing multiple AWS accounts, powering CLI-based automation scripts that need to operate under a user's delegated permissions, and integrating third-party applications with corporate identity providers such as Azure AD, Okta, or Ping Identity through the SAML-to-OIDC bridge that IAM Identity Center provides.

Technical Integration & Multi-Client Support

The AWS SSO OIDC MCP Integration translates REST paths, operational endpoints, and tool schemas into standardized Model Context Protocol JSON-RPC 2.0 messages. This allows AI assistants like Claude Desktop, Cursor IDE, VS Code (Cline/Roo Code), and Zed Editor to run tool queries and execute functions seamlessly.

Claude Desktop

Add stdio configuration block to claude_desktop_config.json.

Cursor IDE

Configure workspace root at .cursor/mcp.json or Settings -> MCP.

VS Code / Cline

Insert server JSON payload into cline_mcp_settings.json.

Specification & Compatibility Table

PropertySpecification Detail
Target IntegrationAWS SSO OIDC (amazonaws-com-sso-oidc)
Directory Categorycloud infrastructure
Protocol SpecJSON-RPC 2.0 (stdio)
Canonical Path/mcp/amazonaws-com-sso-oidc/

Frequently Asked Questions

How do I access the full JSON configuration for AWS SSO OIDC?

Click 'Open Full AWS SSO OIDC MCP Config' above to view the complete parameter schema, environment variable setup, and copy-pasteable JSON configs for Claude Desktop, Cursor, and VS Code.

Does AWS SSO OIDC require authentication secrets?

Authentication depends on upstream API requirements. Check the environment variable table on the detail page to view required API keys and header tokens.

Related Integrations

Browse by Category

Explore MCP server integrations organized by platform and use case.

Developer Tools Integrations (15+)
AI & ML Integrations (15+)
Data & Analytics Integrations (15+)
Cloud Infrastructure Integrations (15+)
Communication Integrations (15+)
Finance & Payments Integrations (15+)
Design & Creative Integrations (15+)
Productivity Integrations (15+)
Databases Integrations (15+)
Security Integrations (15+)
Browser Automation Integrations (6+)
Automation Integrations (6+)