/plushcap/analysis/plaid/aws-sso-devops

AWS SSO in a DevOps first world

What's this blog post about?

Plaid, a financial technology company, has implemented AWS Single Sign-On (SSO) as part of its DevOps strategy. The company previously used Okta's SAML federation for user identity management but switched to AWS SSO due to limitations in the older solution. However, they faced challenges with the new system, such as support for temporary CLI/API access and compatibility issues with advanced MFA protection controls. To overcome these obstacles, Plaid developed an unconventional approach using Terraform modules and custom tools like megabin and a Chrome extension to automate the login workflow and enable seamless user access management. The company's experience highlights the benefits of integrating AWS SSO with existing DevOps tools, incorporating troubleshooting and support scenarios in automation, and having backup options for unforeseen issues.

Company
Plaid

Date published
July 25, 2022

Author(s)
Ashish Kurmi

Word count
1745

Language
English

Hacker News points
None found.


By Matt Makai. 2021-2024.