---
title: Adding Amazon Web Services to the PingOne application portal
description: Use the application catalog to add Amazon Web Services (AWS) to your application portal.
component: pingone
page_id: pingone:applications:p1_adding_amazon_web_services_p1_application_portal
canonical_url: https://docs.pingidentity.com/pingone/applications/p1_adding_amazon_web_services_p1_application_portal.html
revdate: January 10, 2025
section_ids:
  steps: Steps
  result: Result:
  next-steps: Next steps
---

# Adding Amazon Web Services to the PingOne application portal

Use the application catalog to add Amazon Web Services (AWS) *(tooltip: \<div class="paragraph">
\<p>An Amazon subsidiary providing cloud computing platforms.\</p>
\</div>)* to your application portal.

## Steps

1. In PingOne, go to **Applications > Application Catalog**.

2. In the **Search for applications** field, enter `Amazon Web Services`.

3. Click the **Amazon Web Services** entry to open the details panel.

4. Review the following:

   * **Name**. Enter a new name to replace the default application name (optional).

   * **Icon**. Select a new image to replace the default application icon (optional).

   * **Entity ID**. The field is pre-populated with the correct value for AWS.

5. Click **Next**.

6. On the **Map Attributes** page, review the AWS to PingOne attribute mappings.

   |   |                                                                                                                                                                                                                                                                                                                                                                                                                                              |
   | - | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
   |   | Common attributes are pre-populated with the Security Assertion Markup Language (SAML) *(tooltip: \<div class="paragraph">&#xA;\<p>A standard, XML-based, message-exchange framework enabling the secure transmittal of authentication tokens and other user attributes across domains.\</p>&#xA;\</div>)* subject, the SAML role session name, and the SAML session duration. You must map any required attributes before you can continue. |

   | Option                                 | Description                                                                                                                                                                                                                                                                                                      |
   | -------------------------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
   | To change an attribute mapping         | Enter or select a new attribute in the PingOne Mappings list.                                                                                                                                                                                                                                                    |
   | To add an attribute                    | Click **[icon: plus, set=fa]Add**. Enter the appropriate attribute mappings. To use the expression builder, or to map the attribute to a literal string value, click the **Gear** icon. For more information, see [Using the expression builder](../pingone_expression_language/p1_use_expression_builder.html). |
   | To designate the attribute as required | Select the **Required** check box.                                                                                                                                                                                                                                                                               |
   | To delete an attribute mapping         | Click the **Delete** icon.                                                                                                                                                                                                                                                                                       |

7. Click **Next**.

8. For **Select Groups**, enter the name of the groups that you want to have access to the application.

   |   |                                                                                                                           |
   | - | ------------------------------------------------------------------------------------------------------------------------- |
   |   | By default, all users have access to the application. Assigning groups restricts application access to only those groups. |

9. Click **Save**.

   ### Result:

   The application is now configured for PingOne. You might have to perform additional configuration on the application side.

## Next steps

To see applications that have already been configured, click the **Configured** tab on the **Application Catalog** page.

On the **Connection Details** page, you can download or copy metadata required by the application for single sign-on (SSO) *(tooltip: \<div class="paragraph">
\<p>The process of authenticating an identity (signing on) at one website (usually with a user ID and password) and then accessing resources secured by other domains without reauthenticating.\</p>
\</div>)* configuration.

This information includes:

* PingOne metadata

* The PingOne signing certificate

* The PingOne Issuer ID Uniform Resource Locator (URL) *(tooltip: \<div class="paragraph">
  \<p>Identifies a resource according to its internet location.\</p>
  \</div>)*

* The PingOne SSO Service URL

* The PingOne identity provider (IdP) *(tooltip: \<div class="paragraph">
  \<p>A service that manages identity information and provides authentication services to relying clients or SPs within a federated or distributed network.\</p>
  \</div>)* Metadata URL

* The PingOne Initiate SSO URL

After you configure the application, you can manage it at **Applications > Applications**. For more information about advanced settings, see [Editing an application](p1_editing_applications.html).
