Product Releases and Updates
Introducing IAM Role-Based Authentication for AWS Bedrock

Introducing IAM Role-Based Authentication for AWS Bedrock

22 July 2026
AWSIAM

System Administrators can now configure an AWS Bedrock AI Model connection using IAM role-based authentication. IAM Role is the recommended default for new connections. When selected, OutSystems generates a unique External ID for the tenant, which the administrator uses to configure a trust relationship in their AWS account with the help of ready-made setup templates provided directly in the portal. OutSystems issues short-lived credentials at runtime without storing any AWS access keys.

Before going live, administrators can test the connection directly in the portal to confirm everything is set up correctly, with clear guidance if something needs fixing. The External ID can be rotated at any time for added security. Agents using Bedrock models over IAM role-based authentication run completely on their own at runtime, requiring zero developer action. Access Keys authentication remains available for existing connections and is not affected.

ODC
Artificial Intelligence