# AWS SSO + Rancher

**URL:** <https://forums.suse.com/t/aws-sso-rancher/36604>\
**Category:** General\
**Created:** [December 30, 2021, 10:17am UTC](https://forums.suse.com/t/aws-sso-rancher/36604 "2021-12-30T10:17:24Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![Fufelok](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/fufelok/32/8458_2.png) [@Fufelok](https://forums.suse.com/u/Fufelok)\
**Post date:** [December 30, 2021, 10:17am UTC](https://forums.suse.com/t/aws-sso-rancher/36604/1 "2021-12-30T10:17:24Z")

</div>

Is it even possible to achieve configuration to Rancher through the AWS SSO? I thought it will be easy to do using Keycloak (SAML) configuration, but we cannot retrieve private key, that is required by this configuration, from AWS SSO because it doesn’t allow this.

---

<div class="post-metadata">

**Author:** ![Opet](https://sea2.discourse-cdn.com/flex022/user_avatar/forums.suse.com/opet/32/8654_2.png) [@Opet](https://forums.suse.com/u/Opet)\
**Post date:** [February 21, 2022, 5:01pm UTC](https://forums.suse.com/t/aws-sso-rancher/36604/2 "2022-02-21T17:01:37Z")

</div>

I was able to integrate AWS SSO as my SAML provider by selecting AD FS instead in Rancher (Microsoft Active Directory Federation Services). Now my users click on “Login with ADFS” to actually connect with AWS SSO. It’s weird by it works.

I wish Rancher would simply add a generic SAML integration (or a direct AWS SSO integration).
