AWS Single Sign-On MCP Server Integration
AWS IAM Identity Center (successor to AWS Single Sign-On) is a central portal service provided by Amazon Web Services that streamlines and secures user access management across an organization's AWS environment. Its core capabilities revolve around creating a single, unified entry point for users to federate into multiple AWS accounts and business applications using their existing corporate identities. The API enables programmatic interactions for key operations: retrieving temporary security credentials for a specific role in a designated account (`/federation/credentials`), listing the roles a user is permitted to assume in a given account (`/assignment/roles`), enumerating the AWS accounts accessible to a user (`/assignment/accounts`), and securely terminating a user's session (`/logout`). In typical enterprise use cases, this API is foundational for automating identity and access management workflows, enabling DevOps pipelines to fetch temporary credentials for deployment tasks, integrating custom-developed internal portals with the AWS access portal, and generating dynamic reports on user permissions across a multi-account AWS Organizations structure. It serves as the technical backbone for enforcing consistent access policies and simplifying the user experience for cloud resource access.
Technical Integration & Multi-Client Support
The AWS Single Sign-On MCP Integration translates REST paths, operational endpoints, and tool schemas into standardized Model Context Protocol JSON-RPC 2.0 messages. This allows AI assistants like Claude Desktop, Cursor IDE, VS Code (Cline/Roo Code), and Zed Editor to run tool queries and execute functions seamlessly.
Add stdio configuration block to claude_desktop_config.json.
Configure workspace root at .cursor/mcp.json or Settings -> MCP.
Insert server JSON payload into cline_mcp_settings.json.
Specification & Compatibility Table
| Property | Specification Detail |
|---|---|
| Target Integration | AWS Single Sign-On (amazonaws-com-sso) |
| Directory Category | cloud infrastructure |
| Protocol Spec | JSON-RPC 2.0 (stdio) |
| Canonical Path | /mcp/amazonaws-com-sso/ |
Frequently Asked Questions
How do I access the full JSON configuration for AWS Single Sign-On?
Click 'Open Full AWS Single Sign-On MCP Config' above to view the complete parameter schema, environment variable setup, and copy-pasteable JSON configs for Claude Desktop, Cursor, and VS Code.
Does AWS Single Sign-On require authentication secrets?
Authentication depends on upstream API requirements. Check the environment variable table on the detail page to view required API keys and header tokens.
Related Integrations
Supabase API MCP
Manage Supabase projects, databases, authentication, and storage through your AI agent.
Cloudflare API MCP
Manage Cloudflare DNS, CDN, Workers, and security settings through your AI agent.
Vercel API MCP
Deploy projects, manage domains, and monitor deployments through your AI agent.
DigitalOcean API MCP
The DigitalOcean API is a comprehensive, RESTful interface provided by DigitalOcean, a leading cloud infrastructure provider focused on simplifying cloud computing for developers, startups, and enterprises. It serves as the programmatic backbone for managing the entire DigitalOcean ecosystem, enabling users to provision, configure, and control cloud resources such as Droplets (virtual private servers), Kubernetes clusters, managed databases, networks, storage volumes, and application platforms. Core capabilities include full lifecycle management of these resources, from creation and scaling to monitoring and deletion, mirroring the functionality available in the DigitalOcean control panel. Its primary use cases range from automating infrastructure setup for CI/CD pipelines and enabling infrastructure-as-code practices to supporting dynamic application scaling and resource optimization for SaaS products, e-commerce sites, and development environments. The API is designed for both developers seeking to automate their cloud operations and businesses that require programmable, scalable cloud infrastructure without the complexity of larger hyperscale providers.
More in Cloud Infrastructure
Browse by Category
Explore MCP server integrations organized by platform and use case.