AWS IoT Core removes TLS ALPN requirement and adds custom authorizer capabilities
News
The article summarizes new capabilities announced for AWS IoT Core domain configurations, enabling more flexibility and security for IoT device authentication.
Specifically, the article covers:
- Devices no longer need TLS ALPN to determine authentication type and protocol, simplifying migration to AWS IoT Core without firmware updates.
- Custom Authentication with X.509 Client Certificates allows adding custom authentication logic as an additional security layer.
- Custom Client Certificate Validation enables validating X.509 client certificates with custom Lambda functions, e.g., for certificate revocation checks.
- These capabilities are available in all AWS regions where AWS IoT Core is present, except AWS GovCloud (US).
The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.
Related articles
The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.