Amazon Cognito
wikipedia:Amazon Cognito (July 2014) [1] simplifies the task of authenticating users and storing, managing, and syncing their data across multiple devices, platforms, and applications. It works online or offline, and allows you to securely save user-specific data such as application preferences and game state. Cognito works with multiple existing identity providers (--provider-type
) such as Apple, Google, Facebook, and Amazon and through enterprise identity providers such as SAML and OpenID Connect additionally also supports unauthenticated guest users.
Amazon Cognito is HIPAA eligible and PCI DSS, SOC, ISO/IEC 27001, ISO/IEC 27017, ISO/IEC 27018, and ISO 9001 compliant.
Free tier[edit]
The Cognito Your User Pool feature has a free tier of 50,000 MAUs for users who sign in directly to Cognito User Pools and 50 MAUs for users federated through SAML 2.0 based identity providers. The free tier does not automatically expire at the end of your 12 month AWS Free Tier term, and it is available to both existing and new AWS customers indefinitely.
Related terms[edit]
- Single sign-on (SSO)
- AWS Cognito user pools
- AWS Single Sign-On
AWS::ElasticLoadBalancingV2::Listener
, Actions:authenticate-cognito
- Authorization
- Federated authentication
- Amazon API Gateway
- Terraform resource:
aws_lb_listener_rule: action
block:forward, redirect, fixed-response, authenticate-cognito and authenticate-oidc
. [2]
See also[edit]
- Amazon Cognito:
aws cognito-idp
,admin-create-user
,aws cognito-idp create-identity-provider
,aws cognito-idp admin-set-user-password
- Amazon Cognito,
aws cognito-idp, aws_cognito_identity_provider
- SAML, IdP, Assertion, Attribute, SCIM, Amazon Cognito, OpenID Connect (OIDC), SAML response,
SAML:EduPersonOrgDN
, Assertion Consumer Service (ACS), SAML examples,Entity ID
,Name ID
,SAMLResponse, saml-provider, saml2aws
,aws_iam_saml_provider
- Authentication, AAA, MFA, OpenID, OAuth, OATH, PAM, Personal access token, CWE: Broken Access Control, PAT, Mutual authentication, Federated authentication, IdP, Amazon Cognito, Phone to sign in, Firebase Authentication, Auth0, WebAuthn, Web3auth, Challenge-response, Passwordless authentication, HMAC, HOTP, TOTP, OATH
Advertising: