稳定信号未识别到付费功能高风险权限组合
SAML to AWS STS Keys Conversion icon

SAML to AWS STS Keys Conversion

Generates file with AWS STS Keys after logging in to AWS webconsole using SSO (SAML 2.0). It leverages 'assumeRoleWithSAML' API.

用户数10K当前公开安装规模
评分3.8商店平均评分
评论数9公开评论体量
Manifest 版本V3插件平台版本
7日增长0近 7 天净增用户
7日增长率0%相对周增长速度
视觉预览

SAML to AWS STS Keys Conversion 媒体预览

1 项素材
趋势

用户增长趋势

按已采集快照查看用户数变化。

用户增长趋势

10K10K10K10K10K2026年7月15日2026年7月18日2026年7月21日最新值: 10K
评分趋势

近 7 日评分趋势

展示最近 7 日窗口内已采集的评分快照,辅助判断近期评分是否稳定。

7 日评分变化

起始值
3.78
最新值
3.78
7 日评分变化
0.00
3.683.733.783.833.882026年7月15日2026年7月18日2026年7月21日最新值: 3.78
2026年7月15日2026年7月21日
增长概览

日/周/月增长表现

同口径展示 1 天、7 天、30 天的绝对增长与增长率。

1日增长持平
00%
7日增长持平
00%
30日增长持平
00%
技术摘要

版本、语言与抓取信息

查看发布时间、版本、支持语言、最近更新和抓取时间。

版本3.3
ManifestV3
大小157KiB
语言数1English
发布时间
最近更新
最近抓取
English
简介

插件简介

查看插件说明、主要功能和适用场景。

Google Chrome Extension which converts a SAML 2.0 assertion to AWS STS Keys (temporary credentials -> AccessKeyId, SecretAccessKey and SessionToken).

### Why this Chrome Extension? ###

If you don't have any user administration setup within AWS Identity & Access Management (IAM) but instead rely on your corporate user directory, i.e. Microsoft Active Directory. Your company uses a SAML 2.0 Identity Provider (IDP) to log in to the AWS Web Management Console (Single Sign On). Then this Chrome Estension if for you!

You run into trouble as soon as you would like to execute some fancy scripts from your computer which calls the AWS API's. When sending a request to the AWS API's you need credentials, meaning an AccessKey and SecretKey. You can easily generate these keys for each user in AWS IAM. However, since you don't have any users in AWS IAM and don't want to create users just for the sake of having an AccessKey and SecretKey you are screwed. But there is a way to get temporary credentials specifically for your corporate identity.

The Security Token Service (STS) from AWS provides an API action assumeRoleWithSAML. Using the SAML Assertion given by your IDP the Chrome Extension will call this API action to fetch temporary credentials. (AccessKeyId, SecretAccessKey and SessionToken). This way there is no need to create some sort of anonymous user in AWS IAM used for executing scripts. This would be a real security nightmare, since it won't be possible to audit who did what. This Chrome Extension however will make it super easy for you to just use your corporate identity for executing scripts calling AWS API's.

评价

最新评论快照

查看最近评论和评分分布。

商店综合星级3.8Chrome 商店给出的聚合评分,包含只有打分但没有同步评论正文的情况
已同步评论均分3.3仅基于下方已同步评论正文计算
有内容评论6已同步的评论正文数量
总评分/评论数9Chrome 商店公开评分/评论计数

商店综合星级:3.8。下方星级分布只统计已同步评论正文;如果某个插件只有公开分数、没有真实评论正文,这里可能为空。

5
3
4
0
3
1
2
0
1
2
Shubham Gupta - Tech Team2022年12月19日
1

There is an issue in latest version 3.1, in script.js file inside "onBeforeRequestEvent" function "sessionduration" is not defined because of that it is not working please fix this asap.

语言 en
2 有用 · 0 无用
Praveen Dumpala2022年12月16日
1

The latest version v3.0 release on 2022-Dec-15 is not working, please test and fix it. Not able to download credentials file.

语言 en
8 有用 · 0 无用
Alexander Carlson2020年9月21日
5

Excellent!

语言 en
R W2019年4月11日
3

Best tool aout there for this, but no competition. Would be good to see it write aws_session_expiration value into the credentials. Even better if it could load an existing credentials file then update

语言 en
0 有用 · 1 无用
Jason Hutchinson2019年3月17日
5

As per @Leander's review. Very,very handy tool for federated access to AWS accounts when using the CLI!

语言 en
0 有用 · 1 无用
Leander Janssen2016年7月25日
5

Very handy extension when using SAML to login to your AWS account(s) and want to use the AWS CLI tools.

语言 en
0 有用 · 1 无用