AMG requires AWS SSO enabled in your account. AWS SSO is used as the authentication provider to sign into the AMG workspace.
Enable AWS SSO.
If you have not yet set up AWS Organizations, you will be prompted to create an organization. Click the
Create AWS organizationbutton to complete this process.
demo-amgas the workspace name and click
Service managedfor the
Permission type, then click
Selecting this option allows the wizard to automatically provision the permissions for you based on the AWS services we will choose later on.
Service managed permission settingsscreen, you can choose to configure Grafana to monitor resources in the same account that you are creating the workspace from or allow Grafana to reach into multiple AWS accounts by choosing the
Organizationoption and providing the necessary OU IDs.
ACTIVE, click on
Assign userand select the SSO user created in previously. Click
By default, all newly assigned users are added as
Viewersthat only provides read-only permissions on Grafana. After completing this step you should see that the user is now an Administrator.
This concludes this section. You may continue on to the next section.