Unable to Launch AWS Control tower
Hi, I am trying to test out Control Tower, however, i am not able to get past the initial deployment as i get the following errors, Any ideas on how to rectify this?
Error AWS Control Tower failed to set up your landing zone completely: AWS Control Tower is not authorized to baseline the VPC in the enrolled account.
Hello
Common cause: AWS Control Tower always removes the AWS default VPC during initial provisioning. To have an AWS default VPC in an account, you must add it after account creation. AWS Control Tower has its own default VPC that replaces the AWS default VPC, unless you set up Account Factory the way the walkthrough shows you—-so that AWS Control Tower doesn’t provision a VPC at all. Then the account has no VPC. You’d have to re-add the AWS default VPC if you want to use that one.
However, AWS Control Tower doesn't support the AWS default VPC. Deploying one causes the account to enter a Tainted state. When it is in that state, you cannot update the account through AWS Service Catalog.
Action to take: You must delete the default VPC that you added, and then you will be able to update the account.
Relevant questions
Control Tower - Unable to add new account to the Security OU?
Accepted Answerasked 4 months agoControl Tower dependency to other regions?
Accepted Answerasked 2 years agoGrant Access to Control Tower created Cloudtrail S3 Bucket
asked 6 months agoAWS Control Tower - Deployment Error
asked 10 months agoControl Tower - Disable Compliance Change Notifications
asked 2 months agoCan I use Control Tower to automatically deploy infrastructure *other* than VPC
Accepted Answerasked 2 years agoI am not able to stop or terminate the server
asked 8 days agoUnable to Launch AWS Control tower
asked 3 months agoIssue building Control tower landing zone on a new account - AWS Control Tower setup failed. Be sure your account is subscribed to the AWS EC2 service, then try again
Accepted Answerasked 5 months agoControl Tower that the parent organizational unit is not enrolled in AWS Control Tower, when it is
asked 6 months ago