AACFlow

AWS Identity Center

Manage temporary elevated access in AWS IAM Identity Center

Usage Instructions

Provision and revoke temporary access to AWS accounts via IAM Identity Center (SSO). Assign permission sets to users or groups, look up users by email, and list accounts and permission sets for access request workflows.

Tools

identity_center_list_instances

Input

ParameterTypeRequiredDescription
regionstringYesNo description
accessKeyIdstringYesNo description
secretAccessKeystringYesNo description
maxResultsnumberNoNo description
nextTokenstringNoNo description

Output

ParameterTypeDescription
instancesjsoninstances output from the tool
nextTokenstringnextToken output from the tool
countnumbercount output from the tool

identity_center_list_accounts

Input

ParameterTypeRequiredDescription
regionstringYesNo description
accessKeyIdstringYesNo description
secretAccessKeystringYesNo description
maxResultsnumberNoNo description
nextTokenstringNoNo description

Output

ParameterTypeDescription
accountsjsonaccounts output from the tool
nextTokenstringnextToken output from the tool
countnumbercount output from the tool

identity_center_describe_account

Input

ParameterTypeRequiredDescription
regionstringYesNo description
accessKeyIdstringYesNo description
secretAccessKeystringYesNo description
accountIdstringYesNo description

Output

ParameterTypeDescription
idstringid output from the tool
arnstringarn output from the tool
namestringname output from the tool
emailstringemail output from the tool
statusstringstatus output from the tool
joinedTimestampstringjoinedTimestamp output from the tool

identity_center_list_permission_sets

Input

ParameterTypeRequiredDescription
regionstringYesNo description
accessKeyIdstringYesNo description
secretAccessKeystringYesNo description
instanceArnstringYesNo description
maxResultsnumberNoNo description
nextTokenstringNoNo description

Output

ParameterTypeDescription
permissionSetsjsonpermissionSets output from the tool
nextTokenstringnextToken output from the tool
countnumbercount output from the tool

identity_center_get_user

Input

ParameterTypeRequiredDescription
regionstringYesNo description
accessKeyIdstringYesNo description
secretAccessKeystringYesNo description
identityStoreIdstringYesNo description
emailstringYesNo description

Output

ParameterTypeDescription
userIdstringuserId output from the tool
userNamestringuserName output from the tool
displayNamestringdisplayName output from the tool
emailstringemail output from the tool

identity_center_get_group

Input

ParameterTypeRequiredDescription
regionstringYesNo description
accessKeyIdstringYesNo description
secretAccessKeystringYesNo description
identityStoreIdstringYesNo description
displayNamestringYesNo description

Output

ParameterTypeDescription
groupIdstringgroupId output from the tool
displayNamestringdisplayName output from the tool
descriptionstringdescription output from the tool

identity_center_list_groups

Input

ParameterTypeRequiredDescription
regionstringYesNo description
accessKeyIdstringYesNo description
secretAccessKeystringYesNo description
identityStoreIdstringYesNo description
maxResultsnumberNoNo description
nextTokenstringNoNo description

Output

ParameterTypeDescription
groupsjsongroups output from the tool
nextTokenstringnextToken output from the tool
countnumbercount output from the tool

identity_center_create_account_assignment

Input

ParameterTypeRequiredDescription
regionstringYesNo description
accessKeyIdstringYesNo description
secretAccessKeystringYesNo description
instanceArnstringYesNo description
accountIdstringYesNo description
permissionSetArnstringYesNo description
principalTypestringYesNo description
principalIdstringYesNo description

Output

ParameterTypeDescription
messagestringmessage output from the tool
statusstringstatus output from the tool
requestIdstringrequestId output from the tool
accountIdstringaccountId output from the tool
permissionSetArnstringpermissionSetArn output from the tool
principalTypestringprincipalType output from the tool
principalIdstringprincipalId output from the tool
failureReasonstringfailureReason output from the tool
createdDatestringcreatedDate output from the tool

identity_center_delete_account_assignment

Input

ParameterTypeRequiredDescription
regionstringYesNo description
accessKeyIdstringYesNo description
secretAccessKeystringYesNo description
instanceArnstringYesNo description
accountIdstringYesNo description
permissionSetArnstringYesNo description
principalTypestringYesNo description
principalIdstringYesNo description

Output

ParameterTypeDescription
messagestringmessage output from the tool
statusstringstatus output from the tool
requestIdstringrequestId output from the tool
accountIdstringaccountId output from the tool
permissionSetArnstringpermissionSetArn output from the tool
principalTypestringprincipalType output from the tool
principalIdstringprincipalId output from the tool
failureReasonstringfailureReason output from the tool
createdDatestringcreatedDate output from the tool

identity_center_check_assignment_status

Input

ParameterTypeRequiredDescription
regionstringYesNo description
accessKeyIdstringYesNo description
secretAccessKeystringYesNo description
instanceArnstringYesNo description
requestIdstringYesNo description

Output

ParameterTypeDescription
messagestringmessage output from the tool
statusstringstatus output from the tool
requestIdstringrequestId output from the tool
accountIdstringaccountId output from the tool
permissionSetArnstringpermissionSetArn output from the tool
principalTypestringprincipalType output from the tool
principalIdstringprincipalId output from the tool
failureReasonstringfailureReason output from the tool
createdDatestringcreatedDate output from the tool

identity_center_check_assignment_deletion_status

Input

ParameterTypeRequiredDescription
regionstringYesNo description
accessKeyIdstringYesNo description
secretAccessKeystringYesNo description
instanceArnstringYesNo description
requestIdstringYesNo description

Output

ParameterTypeDescription
messagestringmessage output from the tool
statusstringstatus output from the tool
requestIdstringrequestId output from the tool
accountIdstringaccountId output from the tool
permissionSetArnstringpermissionSetArn output from the tool
principalTypestringprincipalType output from the tool
principalIdstringprincipalId output from the tool
failureReasonstringfailureReason output from the tool
createdDatestringcreatedDate output from the tool

identity_center_list_account_assignments

Input

ParameterTypeRequiredDescription
regionstringYesNo description
accessKeyIdstringYesNo description
secretAccessKeystringYesNo description
instanceArnstringYesNo description
principalIdstringYesNo description
principalTypestringYesNo description
maxResultsnumberNoNo description
nextTokenstringNoNo description

Output

ParameterTypeDescription
assignmentsjsonassignments output from the tool
nextTokenstringnextToken output from the tool
countnumbercount output from the tool

On this page

Start building today
Trusted by over 100,000 builders.
The SaaS platform to build AI agents and run your agentic workforce.
Get started