HTTP 403 error when trying to access Management Console with Identity Center user

0

Hi all, I have been getting the following error when trying to access AWS Management Console with IAM Identity Center users. These users have been granted the AdministratorAccess permission policies, and have been able to access the Management Console previously. Not sure what broke recently, but not able to access through the same way. We are able to login, but when we click on Management Console, this error pops up instead.
"No access Request ID: 886f725f-8cbc-43e9-aa2b-8a6895a6f1a2 HTTP status: 403"

Look forward to any kind advice. Thank you!

wkquek
질문됨 일 년 전576회 조회
2개 답변
0
수락된 답변

When you use permission sets, under the hood it creates roles in the accounts with a unique ID along with IDP's when you enable SSO.

  • Has any of these roles been manually removed from the target accounts?
  • Has the IDP in the target accounts been removed which is used by Identity centre?
profile picture
전문가
답변함 일 년 전
profile picture
전문가
검토됨 일 년 전
profile pictureAWS
전문가
검토됨 일 년 전
  • Thanks Gary. This helped to solved my problem. I think I removed the role while doing spring-cleaning of my AWS Policies and Roles.

  • Thanks for the feedback. Glad to have helped.

0

Hi, this previous similar re:Post question had the same problem: https://repost.aws/questions/QU2cQ7kmJlRHae_TWzq5KzOg/giving-user-access-to-aws-console-via-identity-center

For them, the solution was:

After filling in the email address attribute for my AD User and allowing Identity Center to sync, 
my user and test account were able to login successfully.

So is email address attribute already entered in your case?

profile pictureAWS
전문가
답변함 일 년 전
profile picture
전문가
검토됨 일 년 전
  • Hi Didier thanks for your kind reply. Looked at the previous ticket, but I am not using SSO. I am using users created in AWS IAM Identity Center only. Should be different issue from the ticket you mentioned? Thanks again for your kind help.

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.

질문 답변하기에 대한 가이드라인

관련 콘텐츠