# AWS adds network restrictions for workforce identity APIs

_Published Monday, October 5, 2026 at 6:14 PM EDT · Security, Infrastructure · Latest · Tier 2 — Notable_

AWS announced network access controls for IAM Identity Center's Identity Store, allowing customers to restrict requests to the APIs that manage and synchronize workforce users and groups. The capability is available in all AWS Regions where IAM Identity Center is offered.

Customers can restrict Identity Store API requests to allowed private network endpoints or specific source networks. Both that API and the SCIM API, which external identity providers use to synchronize users and groups, support restrictions by IP range. Customers can set different restrictions for each API. The controls are optional, disabled by default, and exempt requests AWS services make on customers' behalf.

## Sources

- [Recent Announcements](https://aws.amazon.com/about-aws/whats-new/2026/10/aws-identity-store-network-controls/)

---
Canonical: https://techandbusiness.org/newswire/XE8_Je6JWj_t6G7MfMAf0M
Published: 2026-10-05T22:14:12.596Z
Story chronology: 2026-10-05T21:00:00.000Z
Retrieved: 2026-10-05T23:44:25.634Z
Publisher: Tech & Business (techandbusiness.org)
