AWS STS simplifies session token size limits and adds session token size monitoring

AWS STS replaces its separate packed-policy and overall session-token size limits with one 4,096-byte token limit. Its API responses now report session-token size, helping users monitor usage as they set session policies and tags.

Image: AWS Security Blog

Why it matters

The unified limit changes how AWS customers budget space for session policies and tags. Reporting token size in API responses gives teams a way to monitor that constraint.

Coverage 1 publisher

  1. AWS Security Blog

    AWS STS simplifies session token size limits and adds session token size monitoring

Articles stay on their publishers’ sites; each link opens the original.