ወደ ዜና ተመለስ
ምርትAI Understanding አጭር መግለጫ

AWS ለ AI ወኪሎች የሚተዳደሩ የOAuth ፈቃድ መግቢያዎችን ይጨምራል

Amazon Bedrock AgentCore Identity አሁን ለዋና ተጠቃሚ OAuth ለተጠቃሚዎች እና ለሱቆች የሚሰጠውን የገንዘብ ማስመሰያ ማስመሰያዎችን የሚያገናኝ የሚተዳደር የስምምነት ፖርታል ያቀርባል።

4 min readRead the primary source
Source-provided image accompanying AWS adds managed OAuth consent portals for AI agents
ዋና-ምንጭ ሰነድምንጭ ተመዝግቧል
አታሚ
aws.amazon.com
ምንጭ አገናኝ
aws.amazon.comhttps://aws.amazon.com/blogs/machine-learning/manage-end-user-oauth-consent-for-ai-agents-with-amazon-bedrock-agentcore/
የምንጭ ዓይነት
ዋና ሰነድ - ኦፊሴላዊ ማስታወቂያ ፣ ወረቀት ፣ ፋይል ወይም የመጀመሪያ ወገን ገጽ በቀጥታ እናነባለን።
አውድይህንን በ60 ሰከንድ ውስጥ ይረዱት።

እዚ ጀምር

ቁልፍ ቃላት

MCP (ሞዴል አውድ ፕሮቶኮል)
AI መተግበሪያዎች ከውጫዊ መሳሪያዎች፣ የውሂብ ምንጮች እና አውድ አቅራቢዎች ጋር በመደበኛ መንገድ እንዲገናኙ የሚያስችል ክፍት ፕሮቶኮል።
ባህሪ
በአምሳያው ጥቅም ላይ የሚውል የግቤት ተለዋዋጭ ትንበያዎችን ለመስራት።
ማስመሰያ
እንደ የቃላት ቁራጭ ወይም ምልክት ባሉ የቋንቋ ሞዴሎች የተቀናበረ የጽሑፍ ቁራጭ።
እራስህን ፈትን።AI ወኪሎች ጥያቄዎች

ምን ተፈጠረ

AWS says AgentCore Identity has added a Consent portal for AgentCore Gateway’s three-legged OAuth flow. Administrators configure an organization identity provider, gateway targets, outbound OAuth providers, and an execution role, then share a portal URL with users. Users sign in, review available services, and authorize providers such as GitHub or Slack independently.

AWS describes the Consent portal as a managed web experience and session-binding endpoint for AgentCore Gateway. The portal handles browser redirects and associates the returning user with the OAuth grant, while AgentCore Identity stores resulting per-user tokens in its vault.

The documented setup requires an administrator to configure a corporate identity provider that issues a JWT access the portal can validate, create or supply an IAM execution role, associate gateway targets with outbound OAuth providers, and configure default return URLs. The source gives examples involving Okta and Auth0 but does not claim that these are the only supported providers.

The end-user flow is provider-specific and independent: a developer opens the shared portal URL, authenticates through the organization’s identity provider, reviews the requested service access, and connects GitHub or Slack. Existing connections remain visible when the portal is reopened unless a grant is revoked, expires, or requires renewed consent. The source highlights use with Kiro, Claude Code, Cursor, and Visual Studio Code, but does not establish that every version or configuration of those clients is supported.

የምንጭ ዝርዝሮች: aws.amazon.com ↗

ለምን አስፈላጊ ነው።

The addresses a practical control problem for AI agents: ensuring that access granted to services such as GitHub and Slack remains tied to the employee who approved it. Previously, customers had to build and host the browser redirects, callback endpoint, user authentication, session handling, and session-binding logic themselves. A managed flow could reduce implementation work and make per-user authorization more consistent for agents used through IDEs and MCP clients, although the source does not establish availability, reliability, or security outcomes beyond AWS’s description.

For an AI coding assistant, per-user OAuth binding determines whose permissions an agent uses when it invokes tools. That is materially different from giving an agent a shared service credential, because the resulting activity can remain associated with the employee who authorized access, subject to the organization’s identity and provider configurations.

The change may lower the amount of custom infrastructure required to deploy agent tool access. AWS specifically says customers previously had to host a public HTTPS callback, manage browser sessions, authenticate the returning user, and call CompleteResourceTokenAuth themselves. The portal centralizes those steps within AgentCore Identity.

CloudTrail visibility provides an operational control: AWS says GetResourceOauth2Token events identify the credential provider, requested scopes, OAuth flow, execution role, and Region, while sensitive and state values are redacted. The source does not independently verify the security of the implementation or quantify any reduction in risk.

Interactive Mechanism

በይነተገናኝ ሜካኒዝም፡ በትክክል እንዴት እንደሚሰራ

ከዚህ ልማት በስተጀርባ ያለውን ቴክኖሎጂ በይነተገናኝ ያስሱ።

Agent Lifecycle Stage:
1
User Intent & Planning: "Audit customer refund request #4092 and settle payment."
2
Tool Calling: Emits structured JSON call crm_get_transaction(id='4092').
3
Guardrail & Verification:🛡️ Paused: High-value action requires human operator sign-off.
4
Final Settlement: Refund recorded, email receipt dispatched, and audit log stored.
Core takeaway: An AI agent is not just a language model—it is a closed loop of planning, tool invocation, and environment feedback. Production systems require self-healing retries and strict human approval guardrails.
በይነተገናኝ ጽንሰ-ሐሳብ ቼክ+10 Points
AI Agents Quiz

An agent must create a draft calendar event for Tuesday at 2 p.m. Which evidence would establish the requested result?

ቀጥሎ ምን እንደሚታይ

Organizations considering the will need to confirm regional availability, pricing, service limits, supported identity providers, and how the managed portal fits their access-review and -lifecycle requirements. AWS’s walkthrough also highlights CloudTrail events for reviewing consent operations and troubleshooting failed token requests.

The source does not provide a price, launch date, service-level commitment, supported AWS Regions beyond saying that portals are listed by account and Region, or a general-availability designation. Access and commercial terms therefore remain unknown.

Administrators must validate the identity provider’s format and carefully scope IAM permissions. The documented setup also creates a dependency between gateway targets and outbound credential providers: AWS instructs administrators to delete the gateway target before deleting its referenced provider.

Organizations should test consent renewal, revocation, expiration, disconnect-and-reconnect behavior, requested scopes, and audit workflows before allowing agents to reach production systems. The source describes these flows but does not report independent testing or user results.

ተዛማጅ መመሪያዎች እና ጥያቄዎች

AI ወኪሎችየAI ሥነ ምግባርPrompt Engineeringየሚያውቁትን ይሞክሩ - ነፃ የ AI ጥያቄዎችን ይሞክሩበእኛ የቃላት መፍቻ ውስጥ የ AI ቃልን ይፈልጉየ AI ሞዴል መልቀቂያ መከታተያ ይከተሉ
ይህ ጠቃሚ ሆኖ ተገኝቷል?