AWS Organizations - Restrict access of parent account in the child account

0

I have two AWS accounts. To take advantage of the unused Reserved Instances in account A (main), I would need to invite account B into its Organization. Is it possible to make it so that accounts remain fully independant except for Billing and Reservations? I don't want account A to have any access/control over account B.

질문됨 일 년 전300회 조회
1개 답변
1

You could use add B to the orgnaization and then apply consildated billing to access the instances from B.

You could also create a resource share, which allows you to (as the name suggests), share resources To share resources that you own, create a resource share. When you create a resource share, you do the following:

Add the resources that you want to share.

For each resource type that you include in the share, specify the permission to use for that resource type.

If only the default permission is available for a resource type, then AWS RAM automatically associates that permission with the resource type and there is no action for you.

If more than the default AWS RAM managed permission is available for a resource type, then you must choose the permission to associate with that resource type.

Here is a link that could provide you of assistance https://docs.aws.amazon.com/ram/latest/userguide/getting-started-sharing.html

AWS_Guy
답변함 일 년 전

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.

질문 답변하기에 대한 가이드라인

관련 콘텐츠