As a new IAM Identity Center customer, you:
Sign in to the AWS Management Console of the management account in your AWS account and navigate to the IAM Identity Center console.
Select the directory you use for storing the identities of your users and groups from the IAM Identity Center console. IAM Identity Center provides you a directory by default that you can use to manage users and groups in IAM Identity Center. You can also change directory to connect to a Microsoft AD directory by clicking through a list of Managed Microsoft AD and AD Connector instances that IAM Identity Center discovers in your account automatically. If you want to connect to a Microsoft AD directory, see Getting Started with AWS Directory Service .
Grant users single sign-on access to AWS accounts in your organization by selecting the AWS accounts from a list populated by IAM Identity Center, and then selecting users or groups from your directory and the permissions you want to grant them.
Give users access to business cloud applications by:
a. Selecting one of the applications from the list of pre-integrated applications supported in IAM Identity Center.
b. Configuring the application by following the configuration instructions.
c. Selecting the users or groups that should be able to access this application.
Give your users the IAM Identity Center sign-in web address that was generated when you configured the directory so that they can sign in to IAM Identity Center and access accounts and business applications.