Home icon

Amazon Cognito now supports machine-to-machine authorization without a user pool domain

News



Amazon Cognito now supports the GetClientToken API operation, enabling machine-to-machine authorization without configuring a user pool domain.

  • App clients authenticate with client ID and secret to receive access tokens for custom scopes
  • Available as native AWS API operation integrated with AWS SDKs, WAF, and VPC endpoints
  • Provides alternative to existing domain-based OAuth 2.0 client-credentials flow
  • Available in all AWS Regions where Amazon Cognito user pools are supported
  • Standard Cognito M2M pricing applies

GetClientToken simplifies service-to-service authorization for applications, microservices, and automated workloads.



Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

Mar 3
2025
Amazon Cognito now supports access token customization for machine-to-machine (M2M) authorization flows
Apr 30
2025
Amazon Cognito adds enhanced context support for machine-to-machine (M2M) authorization flows
Jan 13
2025
How to monitor, optimize, and secure Amazon Cognito machine-to-machine authorization
Aug 26
2026
Amazon Cognito adds admin API operation to reset user TOTP configurations

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.