Cloud-Plattformen · 31.08.2026, 19:17 UTC
Amazon Cognito now supports machine-to-machine authorization without a user pool domain
| Schweregrad | info |
|---|---|
| Kategorie | Cloud-Plattformen |
| Quelle | AWS What's New ↗ |
| Veröffentlicht | 31.08.2026 UTC |
Sicherheitsmeldung mit Schweregrad noch nicht bewertet. Technische Details im Tab „Originaltext“; empfohlene Schritte in der Checkliste.
Amazon Cognito now supports the GetClientToken API operation, enabling app clients to obtain access tokens for machine-to-machine (M2M) authorization directly through the AWS SDK, CLI, or API — without configuring a user pool domain. This gives you an additional path to authorize service-to-service communication for applications, microservices, and automated workloads. The new GetClientToken API operation lets your app client authenticate with its client ID and secret to receive an access token authorized for custom scopes on your resource servers. As a native AWS API operation, GetClientToken integrates seamlessly with AWS SDKs and supports AWS WAF and VPC interface endpoints (AWS PrivateLink). The existing domain-based OAuth 2.0 client-credentials flow remains available. This feature is available in all AWS Regions where Amazon Cognito user pools are available. To get started, configure an app client and call GetClientToken using the AWS Management Console, CLI, or SDKs. Standard Amazon Cognito M2M pricing applies. See Amazon Cognito Developer Guide and GetClientToken API Reference for details.
Maßnahmen
⬇ Als MarkdownVerwandte Beiträge
- info AWS announces AWS Interconnect - multicloud connectivity with Microsoft Azure in preview
- info AWS Agent Registry for centralized agent discovery and governance is now generally available
- info Amazon EC2 R9g and R9gd instances powered by AWS Graviton5 processors are now generally available
- info Automated Security Response on AWS adds AI Toolkit for custom remediations