ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 360 - SOA-C02 discussion

Report
Export

A company that uses AWS Organizations recently implemented AWS Control Tower The company now needs to centralize identity management A SysOps administrator must federate AWS 1AM Identity Center with an external SAML 2.0 identity provider (IdP) to centrally manage access to all the company's accounts and cloud applications

Which prerequisites must the SysOps administrator have so that the SysOps administrator can connect to the external IdP? (Select TWO.)

A.
A copy of the 1AM Identity Center SAML metadata
Answers
A.
A copy of the 1AM Identity Center SAML metadata
B.
The IdP metadata, including the public X.509 certificate
Answers
B.
The IdP metadata, including the public X.509 certificate
C.
The IP address of the IdP
Answers
C.
The IP address of the IdP
D.
Root access to the management account
Answers
D.
Root access to the management account
E.
Administrative permissions to the member accounts of the organization
Answers
E.
Administrative permissions to the member accounts of the organization
Suggested answer: A, B

Explanation:

IAM Identity Center SAML Metadata:

This metadata is required to establish the trust relationship between AWS IAM Identity Center and the external SAML 2.0 identity provider.

Steps:

Download the IAM Identity Center SAML metadata from the AWS Management Console.

Provide this metadata to the external IdP.

IdP Metadata:

The metadata from the IdP, including the public X.509 certificate, is needed to configure the trust relationship.

Steps:

Obtain the IdP metadata, which includes the entity ID, endpoints, and X.509 certificate.

Configure the IAM Identity Center with this information.

asked 16/09/2024
YASSIR EL GHAZY
54 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first