AWS IAM Identity Center (SSO) - Assign Group to Organizational Unit

0

Hi all,

Working on an enterprise architecture/environment, having a huge number of AWS Accounts, We are facing some difficulties to assign Users/Groups to multiple-accounts.

So I'm asking if there is a way to assign Users/Groups to the whole Organizational Unit instead of selecting multiple-accounts each time we need to give access to a new employee/developer ?

Enter image description here

Thanks alot

Peter

1 Answer
0

As far as I know, we can't specify OU to assign AWS accounts to Users/Groups. You would be able to easily implement it by AWS CLI or SDK.

If AWS CLI, the following commands help you. https://docs.aws.amazon.com/cli/latest/reference/organizations/list-accounts-for-parent.html https://docs.aws.amazon.com/cli/latest/reference/sso-admin/create-account-assignment.html

suzuats
answered 3 months ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions