Updated on 2025-05-16 GMT+08:00

Notes and Constraints

Notes

  • IAM Identity Center obtains member account information from organizations defined in the Organizations service. Before using IAM Identity Center, you must enable the Organizations service and create an organization. Then, you can log in to IAM Identity Center using the organization's management account.

Constraints

The following table describes quotas for IAM Identity Center. To increase the quota, see "How Do I Increase My Quota?" in the IAM Identity Center User Guide.

Table 1 Quotas for IAM Identity Center

Item

Default Quota

Adjustable

Number of users that can be created in IAM Identity Center

100,000

Yes

Number of groups that can be created in IAM Identity Center

100,000

Yes

Number of users in a group

Unlimited

-

Number of groups to which a user can be added

1,000

No

Number of multi-factor authentication (MFA) devices that can be added to a user

2

No

Number of permission sets that can be created in IAM Identity Center

2,000

Yes

Number of policies in a permission set

20 (including custom policies)

No

Number of permission sets that can be associated with an account

50

Yes

Number of characters in a custom policy

6,144

No

Number of external identity providers (IdPs) that can be connected

1

No

Number of access control attributes that can be added

20

No