IAM
IAM に関する更新 15 件。
IAM Roles Anywhere now provides a Java plugin for the AWS SDK
IAM Roles AnywhereがAWS SDK for Java v2向けのJavaプラグインを提供開始しました。
AWS Partner Central agents MCP Server now supports OAuth with AWS Sign-In
AWS Partner Central agents MCP ServerがAWS Sign-In経由のOAuthをサポートしました。
AWS IAM now supports 20 managed policies per role by default
AWS IAMのロールにアタッチできるマネージドポリシーのデフォルト上限が、従来の10個から20個に引き上げらりました。
AWS IAM identity federation to external services is now available in AWS European Sovereign Cloud Region
- 日付: 2026-08-19
- 元記事: https://aws.amazon.com/about-aws/whats-new/2026/08/aws-iam-european-sovereign-cloud/
AWS IAMのアウトバウンドIDフェデレーション機能が、EU内に完全に配置された AWS European Sovereign Cloud(Germany)リージョンで利用可能になりました。
IAM Policy Autopilot now supports Terraform plan files
- 日付: 2026-08-19
- 元記事: https://aws.amazon.com/about-aws/whats-new/2026/08/iam-policy-autopilot-now-supports-terraform-plan-files
IAM Policy AutopilotがTerraformのplanファイルを直接入力として受け取り、Terraformで定義したインフラに対するベースラインIAMポリシーを自動生成できるようになりました。
IAM Policy Simulator moves to the IAM console and adds additional capabilities
- 日付: 2026-07-31
- 元記事: https://aws.amazon.com/about-aws/whats-new/2026/07/iam-policy-simulator-iam-console/
IAM Policy Simulatorが独立サイトからIAMコンソールに統合され、サービスコントロールポリシー(SCP)の評価やポリシー除外などの新機能が追加されました。
OAuth support for the AWS MCP Server
AWS MCP ServerがAWS Sign-In経由のOAuthをサポートし、AIエージェントを追加の認証ソフト不要で標準的なOAuth方式により直接接続できるようになりました。
AWS Sign-in now supports resource-based policies and resource control policies
AWS Management Consoleのサインインに対して、アカウント単位のリソースベースポリシーと組織単位のResource Control Policies(RCPs)を適用できるようになりました。
AWS Organizations now supports higher quotas for service control policies (SCPs)
- 日付: 2026-05-16
- 元記事: https://aws.amazon.com/about-aws/whats-new/2026/05/aws-organizations-increased-scp-quotas/
AWS Organizationsのサービスコントロールポリシー(SCP)の上限が引き上げられ、ノード(ルート/OU/アカウント)あたりのアタッチ可能なSCP数が5→10に、SCPの最大サイズが5,120文字→10,240文字に増加しまし…
AWS IAM now provides higher maximum quotas for roles, role trust policies, instance profiles, managed policies, and identity providers
AWS IAM の複数リソースに対する最大クォータが引き上げられました。
IAM Roles Anywhere now enforces VPC endpoint policies for the CreateSession API
IAM Roles AnywhereがVPCエンドポイントポリシーでCreateSession APIの許可/拒否を明示的に制御できるようになりました。
IAM Roles Anywhere now supports post-quantum digital certificates
- 日付: 2026-03-10
- 元記事: https://aws.amazon.com/about-aws/whats-new/2026/03/iam-roles-anywhere-post-quantum-digital-certificates
IAM Roles AnywhereがNIST標準のポスト量子デジタル署名方式(FIPS 204 モジュール格子型署名: ML-DSA)をサポートしました。
AWS simplifies IAM role creation and setup in service workflows
- 日付: 2026-03-05
- 元記事: https://aws.amazon.com/about-aws/whats-new/2026/03/aws-simplifies-iam-role-creation-and-setup/
AWSコンソールのサービスワークフロー内でIAMロールを直接作成・設定できるようになり、別タブでIAMコンソールに移動せずに権限のカスタマイズが可能になりました。
AWS STS now supports validation of select identity provider specific claims from Google, GitHub, CircleCI and OCI
- 日付: 2026-02-03
- 元記事: https://aws.amazon.com/about-aws/whats-new/2026/01/aws-sts-supports-validation-identity-provider-claims
AWS STS が、Google、GitHub、CircleCI、Oracle Cloud Infrastructure(OCI)発行の一部プロバイダー固有クレームの検証をサポートしました。
AWS introduces additional policy details to access denied error messages
- 日付: 2026-01-22
- 元記事: https://aws.amazon.com/about-aws/whats-new/2026/01/additional-policy-details-access-denied-error/
AWSはアクセス拒否(AccessDenied)エラーメッセージに、同一アカウントおよび同一組織内のIAM/OrganizationsポリシーのARNを追加しました。