Skip to content

Commit 4225c0d

Browse files
author
Michael Kania
committed
add more details around TOTP tokens
1 parent 5caaebe commit 4225c0d

File tree

1 file changed

+10
-8
lines changed

1 file changed

+10
-8
lines changed

README.md

Lines changed: 10 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -42,14 +42,16 @@ Before running this tool, you will need to following pieces of information
4242

4343
1. Run the setup-new-user - `setup-new-aws-user --role <IAM_ROLE> --iam_user <USER> --profile=<AWS_PROFILE> --account-id=<AWS_ACCOUNT_ID>`
4444
2. Enter the access keys generated when prompted.
45-
3. The script will open a window with a QR code, which you will use to configure
46-
a temporary one time password (TOTP).
47-
4. Create an entry in your 1Password account field and be ready to scan it with the 1Password app.
48-
**NOTE** You will be asked for your MFA (TOTP) tokens three times while
49-
validating the new virtual MFA device and rotating your access keys.
50-
**Take care not to use the same token
51-
more than once**, as this will cause the process to fail.
52-
5. Once the tool has completed, you should be able to access the AWS account. You can run the following
45+
46+
3. The script will open a window with a QR code, which you will use to configure a temporary one time password (TOTP).
47+
4. You'll then need to create a new entry in your 1Password account configure it with a TOTP field.
48+
5. Use 1Password to scan the QR code and hit save. New TOTP tokens should generate every 30 seconds.
49+
6. From here the tool will prompt you for 3 unique TOTP tokens. **NOTE Take care not to use the same token more than once, as this will cause the process to fail.**
50+
7. Once the tool has completed, you should be able to access the AWS account. You can run the following command filling in the AWS_PROFILE value
51+
52+
```shell
53+
aws-vault exec AWS_PROFILE -- aws sts get-session
54+
```
5355

5456
## Development setup
5557

0 commit comments

Comments
 (0)