1 Answer
- Newest
- Most votes
- Most comments
0
Hello.
As far as I know, I don't think it's possible to allow an IAM identity center user to perform actions only on a specific OU.
IAM identity center users are allowed to perform actions on the AWS accounts they have been granted access to.
Therefore, I think it would be a good idea to not link the IAM identity center user to any AWS account other than the required AWS account.
https://docs.aws.amazon.com/singlesignon/latest/userguide/useraccess.html
Relevant content
- asked 2 years ago
- asked 8 months ago
- asked 3 months ago
- AWS OFFICIALUpdated 5 months ago
- AWS OFFICIALUpdated 8 months ago
- AWS OFFICIALUpdated 2 years ago