Amazon AppStream 2.0 now supports federated sign-in using SAML 2.0. Users can sign in to AppStream 2.0 using their existing credentials, and start streaming applications. As an administrator, you can use your existing user directory to control end-user access to applications available via AppStream 2.0. You can quickly add or remove access for users or groups, restrict access based on user locations, and enable multi-factor authentication. You can enable federated access and controls via any SAML 2.0 compliant identity provider such as Microsoft Active Directory Federation Services, Okta, Ping Identity, and Shibboleth.