AptlyStar

AWS STS

Connect to AWS Security Token Service

Instructions d'utilisation

Integrate AWS STS into the workflow. Assume roles, get temporary credentials, verify caller identity, and look up access key information.

Outils

sts_assume_role

Assume an IAM role and receive temporary security credentials

Entrée

ParamètreTypeObligatoireDescription
regionstringOuiAWS region (e.g., us-east-1)
accessKeyIdstringOuiAWS access key ID
secretAccessKeystringOuiAWS secret access key
roleArnstringOuiARN of the IAM role to assume
roleSessionNamestringOuiIdentifier for the assumed role session
durationSecondsnumberNonDuration of the session in seconds (900-43200, default 3600)
policystringNonJSON IAM policy to further restrict session permissions (max 2048 chars)
externalIdstringNonExternal ID for cross-account access
serialNumberstringNonMFA device serial number or ARN
tokenCodestringNonMFA token code (6 digits)

Sortie

ParamètreTypeDescription
accessKeyIdstringTemporary access key ID
secretAccessKeystringTemporary secret access key
sessionTokenstringTemporary session token
expirationstringCredential expiration timestamp
assumedRoleArnstringARN of the assumed role
assumedRoleIdstringAssumed role ID with session name
packedPolicySizenumberPercentage of allowed policy size used
sourceIdentitystringSource identity set on the role session, if any

sts_get_caller_identity

Get details about the IAM user or role whose credentials are used to call the API

Entrée

ParamètreTypeObligatoireDescription
regionstringOuiAWS region (e.g., us-east-1)
accessKeyIdstringOuiAWS access key ID
secretAccessKeystringOuiAWS secret access key

Sortie

ParamètreTypeDescription
accountstringAWS account ID
arnstringARN of the calling entity
userIdstringUnique identifier of the calling entity

sts_get_session_token

Get temporary security credentials for an IAM user, optionally with MFA

Entrée

ParamètreTypeObligatoireDescription
regionstringOuiAWS region (e.g., us-east-1)
accessKeyIdstringOuiAWS access key ID
secretAccessKeystringOuiAWS secret access key
durationSecondsnumberNonDuration of the session in seconds (900-129600, default 43200)
serialNumberstringNonMFA device serial number or ARN
tokenCodestringNonMFA token code (6 digits)

Sortie

ParamètreTypeDescription
accessKeyIdstringTemporary access key ID
secretAccessKeystringTemporary secret access key
sessionTokenstringTemporary session token
expirationstringCredential expiration timestamp

sts_get_access_key_info

Get the AWS account ID associated with an access key

Entrée

ParamètreTypeObligatoireDescription
regionstringOuiAWS region (e.g., us-east-1)
accessKeyIdstringOuiAWS access key ID
secretAccessKeystringOuiAWS secret access key
targetAccessKeyIdstringOuiThe access key ID to look up

Sortie

ParamètreTypeDescription
accountstringAWS account ID that owns the access key

On this page