{"repo":"bug3/aws-saml-cli","free":true,"listed":false,"github":"https://github.com/bug3/aws-saml-cli","clone":"git clone https://github.com/bug3/aws-saml-cli.git","description":"A CLI tool to fetch AWS credentials using SAML authentication","language":"TypeScript","stars":10,"topics":["authentication","automation","aws","cli","credentials","identity-provider","saml","sts"],"license":"MIT","category":"cli-tools","readme_excerpt":"aws-saml-cli &middot; CLI tool for SAML-based AWS authentication via your Identity Provider (IdP). Securely saves your login session, captures the SAML response, parses the assertion, and assumes your AWS role with STS. Features - Interactive login via browser - Saves session state encrypted with uniquenv - Intercepts SAML response and extracts role information - Assumes AWS role and writes credentials to /.aws/credentials - Optional AWS region override via --region --- Installation Installs the CLI globally as the aws-saml-cli command. --- Usage Save SAML session - Opens a browser to the given SAML login URL - Login manually and press F8 or the Resume button in the browser - Encrypted session is saved to /.aws-saml-cli/session.uniquenv --- Capture SAML and assume AWS role - Loads the encrypted session - Navigates to the previously stored login URL - Intercepts the SAML POST request - Parses the SAMLResponse , extracts the role and principal ARNs - Sends AssumeRoleWithSAML to STS - Writes credentials to /.aws/credentials under [default] - With --headless , runs the browser without a visible window so it can run in the background --- Configuration - Region can be provided via --region , otherwise resolved via: - AWS REGION or AWS DEFAULT REGION environment variable - /.aws/config profile --- Example Workflow --- Session File Session is stored at: Encrypted using your device-specific key with uniquenv. Cannot be decrypted on other machines. --- License MIT","default_branch":null,"files":null,"tree":[],"storefront":"/r/bug3","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/bug3/aws-saml-cli/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}