Creates an Amazon QuickSight user, whose identity is associated with the AWS Identity and Access Management (IAM) identity or role specified in the request.

The permission resource is ``arn:aws:quicksight:us-east-1:aws-account-id :user/default/user-name `` .

The condition resource is the Amazon Resource Name (ARN) for the IAM user or role, and the session name.

The condition keys are quicksight:IamArn and quicksight:SessionName .

CLI Sample:

aws quicksight register-user -\-aws-account-id=111122223333 -\-namespace=default -\ -\-identity-type=IAM -\-user-role=AUTHOR -\-iam-arn=arn:aws:iam::111122223333:user/Pat

--identity-type <value>
--email <value>
--user-role <value>
[--iam-arn <value>]
[--session-name <value>]
--aws-account-id <value>
--namespace <value>
[--user-name <value>]
[--cli-input-json <value>]
--identity-type (string)

Amazon QuickSight supports several ways of managing the identity of users. This parameter accepts two values:

  • IAM : A user whose identity maps to an existing IAM user or role.
  • QUICKSIGHT : A user whose identity is owned and managed internally by Amazon QuickSight.

Possible values:

  • IAM

--email (string)

The email address of the user that you want to register.

--user-role (string)

The Amazon QuickSight role of the user. The user role can be one of the following:

  • READER : A user who has read-only access to dashboards.
  • AUTHOR : A user who can create data sources, data sets, analyses, and dashboards.
  • ADMIN : A user who is an author, who can also manage Amazon QuickSight settings.

--iam-arn (string)

The ARN of the IAM user or role that you are registering with Amazon QuickSight.

--session-name (string)

You need to use this parameter only when you register one or more users using an assumed IAM role. You don't need to provide the session name for other scenarios, for example when you are registering an IAM user or an Amazon QuickSight user. You can register multiple users using the same IAM role if each user has a different session name. For more information on assuming IAM roles, see ` assume-role`__ in the AWS CLI Reference.

--aws-account-id (string)

The ID for the AWS account that the user is in. Currently, you use the ID for the AWS account that contains your Amazon QuickSight account.

--namespace (string)

The namespace. Currently, you should set this to default .

--user-name (string)

The Amazon QuickSight user name that you want to create for the user you are registering.

User -> (structure)

The user name.

Arn -> (string)

The Amazon Resource Name (ARN) for the user.

UserName -> (string)

The user's user name.

Email -> (string)

The user's email address.

Role -> (string)

The Amazon QuickSight role for the user.

IdentityType -> (string)

The type of identity authentication used by the user.

Active -> (boolean)

Active status of user. When you create an Amazon QuickSight user that’s not an IAM user or an AD user, that user is inactive until they sign in and provide a password

PrincipalId -> (string)

The principal ID of the user.

UserInvitationUrl -> (string)

The URL the user visits to complete registration and provide a password. This is returned only for users with an identity type of QUICKSIGHT .

RequestId -> (string)

The AWS request ID for this operation.

Status -> (integer)

The http status of the request.