Decentralized Managed Authentication.

sign-up, -in integration for your apps.

Social identity provider e.g. Facebook, Google

Cognito User Pools

User directory with authentication to Identity Providers (IpD) to grant access to your app.

Allows users to sign-in directly to the User Pool, or using Web Identity Federation.

Can be thought of as the account used to access the system.

Cognito Identity Pools

Temporary credentials for users to access AWS Services

Cognito Sync

Syncs user data and preferences across all devices

Uses push synchronization to push updates and synchronize data

Uses Simple Notification Service (SNS) to send notifications to all user devices when data in the cloud changes.

Web Identity Federation