Strategic Consolidation of Multiple Landing zones and Networks into a Unified Architecture

1

What is the optimal strategy for consolidating multiple master accounts, each with a unique landing zone and associated VPCs linked to separate Transit Gateways, into a unified landing zone where all VPCs are connected to a single Transit Gateway?

1개 답변
1

Currently its not possible to have multiple control tower accounts under one org, there can be only one of in the management account. I would take below steps:

  1. So if you are looking for unifying all accounts under one management, you can either create a new Control tower account or promote one of the existing account.
  2. enroll your existing accounts - https://docs.aws.amazon.com/controltower/latest/userguide/enroll-account.html
  3. decommission unused management account - https://docs.aws.amazon.com/controltower/latest/userguide/how-to-decommission.html

Next part of unifying Networking - This will be little tricky if you have production workload running. see this - https://docs.aws.amazon.com/vpc/latest/tgw/tgw-best-design-practices.html Also have a look at AWS IPAM for managing your VPC and IPs- https://aws.amazon.com/blogs/mt/using-amazon-ipam-to-enhance-aws-control-tower-governance-for-networking-resources/

Thanks

AWS
답변함 3달 전

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.

질문 답변하기에 대한 가이드라인

관련 콘텐츠