Skip to content

docs: document AWS External ID in cloud account connection#375

Open
mintlify[bot] wants to merge 1 commit into
mainfrom
mintlify/989efb08
Open

docs: document AWS External ID in cloud account connection#375
mintlify[bot] wants to merge 1 commit into
mainfrom
mintlify/989efb08

Conversation

@mintlify

@mintlify mintlify Bot commented Jun 23, 2026

Copy link
Copy Markdown
Contributor

Summary

Updates the AWS section of the cloud account connection guide to cover the new IAM External ID flow.

Changes

  • Explains the purpose of the External ID (confused-deputy mitigation) and that Porter generates one per cloud account.
  • Documents the two CloudFormation parameters (TrustArnParameter, ExternalIdParameter) that are now pre-filled in the stack URL.
  • Adds an example trust policy showing the sts:ExternalId condition on porter-manager.

Context

Triggered by the upstream PR that adds support for connecting AWS accounts using External IDs. The connection flow now provisions the cross-account role through a dedicated CloudFormation template that requires an External ID to assume, and Porter verifies the role with that External ID before marking the account connected.

cc @charlievieth for review.

@mintlify mintlify Bot requested a review from charlievieth June 23, 2026 16:12
@charlievieth

Copy link
Copy Markdown
Contributor

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant