{"id":660757,"date":"2013-05-29T08:29:30","date_gmt":"2013-05-29T12:29:30","guid":{"rendered":"http:\/\/gigaom.com\/?p=649983"},"modified":"2013-05-29T08:29:30","modified_gmt":"2013-05-29T12:29:30","slug":"amazon-spreads-net-wider-by-federating-facebook-and-google-and-aws-identities","status":"publish","type":"post","link":"https:\/\/mereja.media\/index\/660757","title":{"rendered":"Amazon spreads net wider by federating Facebook and Google (and AWS) identities"},"content":{"rendered":"<p>Good news for developers who use Amazon Web Services and want to make those apps available to millions of Facebook and Google users: Amazon Web Services Identity Access Management (IAM) can now &#8220;federate&#8221; Google and Facebook user identities.\u00a0Oh, and it also supports AWS new <a href=\"http:\/\/login.amazon.com\/\">Login With Amazon <\/a>feature which promises that companies can &#8220;securely connect your websites and apps with millions of Amazon.com customers.&#8221;<\/p>\n<p><a href=\"http:\/\/gigaom.com\/2012\/10\/18\/what-unbelievable-new-services-does-amazon-have-on-tap\/awslogojpeg-2\/\" rel=\"attachment wp-att-574886\"><img loading=\"lazy\" decoding=\"async\"  alt=\"awslogojpeg\" src=\"http:\/\/gigaom2.files.wordpress.com\/2012\/10\/awslogojpeg.jpg?w=300&#038;h=143\" width=\"300\" height=\"143\" class=\"alignleft size-medium wp-image-574886\" \/><\/a>Amazon announced <a href=\"http:\/\/gigaom.com\/2011\/08\/04\/amazon-gives-users-dedicated-links-to-its-cloud\/\">identity federation for enterprise users<\/a> two years ago. That\u00a0let businesses grant their own employees access to AWS resources based on the users&#8217; current corporate identity management systems. But this new federation capability spreads the net wider. \u00a0This federation will let developers authenticate a user with her existing Amazon, Google or Facebook credentials, which then give her access to specific AWS resources using her existing IAM roles.<\/p>\n<p>In his\u00a0<a href=\"http:\/\/aws.typepad.com\/aws\/2013\/05\/aws-iam-now-supports-amazon-facebook-and-google-identity-federation.html\">AWS blog post<\/a>\u00a0announcing the news, Jeff Wierer, IAM principal product manager, explained a basic use case:<\/p>\n<blockquote id=\"quote-imagine-you%e2%80%99\">\n<p>&#8220;Imagine you\u2019re developing a mobile app that uses the new Login with Amazon service for authentication, and part of the app\u2019s functionality allows end users to upload an image file as their personal avatar. Behind the scenes, you want to store those images as objects in one of your S3 buckets. To enable this, you need to configure a role that is used to delegate access to users of your app. Roles are configured in two parts:<\/p>\n<ol>\n<li>A trust policy that specifies a trusted entity (principal)\u2014that is, who can assume the role. In this case, the trusted entity is any authenticated Amazon.com user.<\/li>\n<li>An access policy with permissions that specify what the user can do.&#8221;<\/li>\n<\/ol>\n<\/blockquote>\n<p>With services like this one, Amazon continues to push its cloud services as the platform of choice for developers at startups and big companies alike as more public competitors come online.<\/p>\n<p><em><a title=\"Attribution License\" href=\"http:\/\/creativecommons.org\/licenses\/by\/2.0\/\">Photo courtesy of <\/a>Flickr user\u00a0<a href=\"http:\/\/www.flickr.com\/photos\/jaaronfarr\/\">jaaro<\/a><\/em><\/p>\n<p>  <img loading=\"lazy\" decoding=\"async\" alt=\"\" border=\"0\" src=\"http:\/\/stats.wordpress.com\/b.gif?host=gigaom.com&#038;blog=14960843&#038;%23038;post=649983&#038;%23038;subd=gigaom2&#038;%23038;ref=&#038;%23038;feed=1\" width=\"1\" height=\"1\" \/><\/p>\n<p><a href=\"http:\/\/pubads.g.doubleclick.net\/gampad\/jump?iu=\/1008864\/GigaOM_RSS_300x250&#038;sz=300x250&#038;%23038;c=169961\"><img decoding=\"async\" src=\"http:\/\/pubads.g.doubleclick.net\/gampad\/ad?iu=\/1008864\/GigaOM_RSS_300x250&#038;sz=300x250&#038;%23038;c=169961\" \/><\/a><\/p>\n<p><strong>Related research and analysis from GigaOM Pro:<\/strong><br \/>Subscriber content. <a href=\"http:\/\/pro.gigaom.com\/?utm_source=cloud&#038;utm_medium=editorial&#038;utm_campaign=auto3&#038;utm_term=649983+amazon-spreads-net-wider-by-federating-facebook-and-google-and-aws-identities&#038;utm_content=gigabarb\">Sign up for a free trial<\/a>.<\/p>\n<ul>\n<li><a href=\"http:\/\/pro.gigaom.com\/2012\/05\/locating-data-centers-in-an-energy-constrained-world\/?utm_source=cloud&#038;utm_medium=editorial&#038;utm_campaign=auto3&#038;utm_term=649983+amazon-spreads-net-wider-by-federating-facebook-and-google-and-aws-identities&#038;utm_content=gigabarb\">Locating data centers in an energy-constrained world<\/a><\/li>\n<li><a href=\"http:\/\/pro.gigaom.com\/2012\/03\/the-new-it-manager-part-1-trends-affecting-it-in-business\/?utm_source=cloud&#038;utm_medium=editorial&#038;utm_campaign=auto3&#038;utm_term=649983+amazon-spreads-net-wider-by-federating-facebook-and-google-and-aws-identities&#038;utm_content=gigabarb\">The new IT manager, part 1<\/a><\/li>\n<li><a href=\"http:\/\/pro.gigaom.com\/2012\/01\/12-tech-leaders-resolutions-for-2012\/?utm_source=cloud&#038;utm_medium=editorial&#038;utm_campaign=auto3&#038;utm_term=649983+amazon-spreads-net-wider-by-federating-facebook-and-google-and-aws-identities&#038;utm_content=gigabarb\">12 tech leaders\u2019 resolutions for 2012<\/a><\/li>\n<\/ul>\n<div class=\"feedflare\">\n<a href=\"http:\/\/feeds.feedburner.com\/~ff\/OmMalik?a=zF2blXlkl3g:TspF0bIOdyY:yIl2AUoC8zA\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/OmMalik?d=yIl2AUoC8zA\" border=\"0\"><\/img><\/a>\n<\/div>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~r\/OmMalik\/~4\/zF2blXlkl3g\" height=\"1\" width=\"1\"\/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Good news for developers who use Amazon Web Services and want to make those apps available to millions of Facebook and Google users: Amazon Web Services Identity Access Management (IAM) can now &#8220;federate&#8221; Google and Facebook user identities.\u00a0Oh, and it also supports AWS new Login With Amazon feature which promises that companies can &#8220;securely connect [&hellip;]<\/p>\n","protected":false},"author":7419,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[],"class_list":["post-660757","post","type-post","status-publish","format-standard","hentry","category-news"],"_links":{"self":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts\/660757","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/users\/7419"}],"replies":[{"embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/comments?post=660757"}],"version-history":[{"count":0,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts\/660757\/revisions"}],"wp:attachment":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/media?parent=660757"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/categories?post=660757"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/tags?post=660757"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}