How do you handle multiple AWS accounts within Okta?
Timothy Patterson

Okta doesn’t know anything about our separate accounts. We created our Identity Provider in a main account and configured Okta to connect to it. Then, in each of our sub-accounts we have created roles that the can be assumed by the roles in our main account using Trust Relationships in the IAM settings.

Users SSO in via Okta and are placed within the main account. They can then use the “Switch Role” feature in the username menu.

