Control Tower Automation

0

We start using Control Tower via console and it automatically sets security account and sandbox account. And Im using AFT for additional account requests. Is there any way I can automate the setup of control tower itself like setting security account and sandbox account

posta 7 mesi fa216 visualizzazioni
2 Risposte
1
Risposta accettata

Hi, unfortunately there is no API call or automation that can do the initial setup of Control Tower and it's Landing Zone at this time. We hope to add that functionality in the future. You can automate Control Tower control configuration using Terraform against the Organization Management Account (Where Control Tower resides) https://registry.terraform.io/providers/hashicorp/aws/latest/docs/resources/controltower_control

To configure resources in the Log-Archive or Audit accounts, you can add them to AFT using the same process you would to provision a new account. Create a new account request but use the existing account details (Account Name, Account email address and Organizational Unit)

profile pictureAWS
con risposta 7 mesi fa
profile picture
ESPERTO
verificato 7 giorni fa
profile picture
ESPERTO
verificato un mese fa
  • Hello ,can we implement new OU with AFT

0

Checkout this blog. You may also want to take a look at the Landing Zone Accelerator if your organization has complex compliance requirement.

Let me know if you have any other questions or if you run into issues walking through the blog.

AWS
con risposta 7 mesi fa

Accesso non effettuato. Accedi per postare una risposta.

Una buona risposta soddisfa chiaramente la domanda, fornisce un feedback costruttivo e incoraggia la crescita professionale del richiedente.

Linee guida per rispondere alle domande