Prerequisites
Before you create a Cloud Connector, complete the following prerequisites on both the AWS side and the Azure side. These steps establish OIDC-based federated authentication between AWS and Microsoft Azure.
Note
The manual Azure prerequisites in Azure prerequisites apply to the AWS CLI path only. If you create a Cloud Connector in the AWS Management Console, the wizard generates a setup script that performs this Azure-side setup for you. For more information, see Create a Cloud Connector (AWS Management Console).
Important
Make sure your AWS account is not in any service control policy (SCP) that
restricts the sts:GetWebIdentityToken action.