Using Console
Using CLI
sts:ExternalId
condition. Here is an example of a trust policy with an external ID:
Using Python
boto3
for AWS, azure-identity
and azure-mgmt-resource
for Azure, and google-auth
and google-api-python-client
for GCP.boto3
to check and enforce MFA on the root account.azure-identity
and azure-mgmt-resource
to ensure Conditional Access policies enforce MFA.google-auth
and google-api-python-client
to ensure Identity Platform enforces MFA.