Amazon.com, Inc.
Token-based access control and grouping
Last updated:
Abstract:
One or more clients of a service may obtain access to resources of the service using one or more roles. A role may be used to delegate access to resources that a client normally would not otherwise have access to. A requestor may make a request to assume an intermediary role and receive a first token that enables assumption of the intermediary role. The requestor, after assuming the intermediary role, may request to assume to assume a destination role and receive a second token that enables the requestor to access one or more computing resources by assuming the destination role.
Status:
Grant
Type:
Utility
Filling date:
20 May 2020
Issue date:
10 May 2022