Skip to content

Instantly share code, notes, and snippets.

@duzvik
Created December 15, 2020 12:13
Show Gist options
  • Save duzvik/efeb24c51be8c43f036e2bc1f48997d5 to your computer and use it in GitHub Desktop.
Save duzvik/efeb24c51be8c43f036e2bc1f48997d5 to your computer and use it in GitHub Desktop.
AssumeRoleWithSAML example
{
"eventVersion": "1.04",
"userIdentity": {
"type": "SAMLUser",
"principalId": "71ECIxd9HdqExample:Bob",
"userName": "Bob",
"identityProvider": "71ECIxd9HdqExample"
},
"eventTime": "2016-03-09T01:22:27Z",
"eventSource": "sts.amazonaws.com",
"eventName": "AssumeRoleWithSAML",
"awsRegion": "us-east-1",
"sourceIPAddress": "127.0.0.1",
"userAgent": "signin.amazonaws.com",
"requestParameters": {
"sAMLAssertionID": "_c0046ce598b94b9d4b8e45027Example",
"roleSessionName": "[email protected]",
"durationSeconds": 3600,
"roleArn": "arn:aws:iam::123456789012:role/RoleToBeAssumed",
"principalArn": "arn:aws:iam::123456789012:saml-provider/Shibboleth"
},
"responseElements": {
"subjectType": "transient",
"issuer": "https://sts-integ.amazon.com/idp/shibboleth",
"credentials": {
"accessKeyId": "ASIADMUEK63ZEXAMPLE",
"expiration": "Mar 9, 2016 2:22:27 AM",
"sessionToken": encoded session token blob
},
"nameQualifier": "71ECIxd9HdqExample",
"assumedRoleUser": {
"assumedRoleId": "AROAIDPPEZS35WEXAMPLE:RoleToBeAssumed",
"arn": "arn:aws:sts::123456789012:assumed-role/RoleToBeAssumed/[email protected]"
},
"subject": "Bob",
"audience": "https://signin.aws.amazon.com/saml"
},
"requestID": "6Example-e595-11e5-b2c7-c9Example",
"eventID": "d8ba460c-265a-41e0-9352-4401bEXAMPLE",
"eventType": "AwsApiCall",
"recipientAccountId": "123456789012"
}
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment