Yeah it’s buzzword-y but here we are. The question on my mind for the last year or two has been this: How _should_ AI Agents and humans share context with each other. I think we can all agree that sharing everything is just awful. So what should be shared, and Continue Reading
Automating IAM Identity Center Permission Sets and Assignments
Introduction IAM Identity Center is an excellent, free tool for federating access across an organization. You should use it. In this post I’ll give an example to manage it with a CDK Pipeline. This pipeline will include steps to retrieve necessary information about your AWS environment, such as SSO instances, Continue Reading
AWS IAM Identity Center (IDC) and Microsoft Entra
Azure to AWS User Federation
AWS Landing Zone Accelerator (LZA) Strengths and Weaknesses
Overview The AWS LZA is an opinionated framework for deploying an AWS Organization and supporting infrastructure. This framework utilizes CDK and codebuild/pipeline in the org management account to orchestrate things like centralized logging, delegate security services, shared networking config, and a couple hundred other things. Should I use it? In Continue Reading
Deploy Stacksets via CDK
A method of deploying stacksets via CDK deployment. Using a custom waiter helps with visibility of stackset instance success or failure.
