Principal Type | Explanation | Credential lifetime (min/max/default) | Learn more at AWS |
---|---|---|---|
Federated User | Yields temporary AWS security credentials for a federated user with the Atlassian user name and an optional, yet typically required IAM |
Policy (check Omit IAM Policy when resource-based policies are used instead)
|
|
|
|
|
|
AWS Elastic Beanstalk is the only remaining service not supported by Federated User yet - use Account (IAM User) instead.
| IAM user: 15m/36hr/12hr Root account: 15m/1hr/1hr |
| ||||||||||||||
Assume Role | Yields temporary AWS security credentials for an assumed role with the Atlassian user name and an optional External ID and an optional IAM Policy (if absent, AWS applies a default)
| 15m/1hr/1hr | ||||||||||||
IAM User (session token) | Yields temporary AWS security credentials for the selected IAM user (recommended) or AWS account (disadvised) itself
|
|
|
IAM user: 15m/36hr/12hr Root account: 15m/1hr/1hr |