Questions tagged with AWS Control Tower

AWS Control Tower provides the easiest way to set up and govern a secure, multi-account AWS environment, called a landing zone.

Content language: English

Select tags to filter
Sort by most recent

Browse through the questions and answers listed below or filter and sort to narrow down your results.

285 results
I have a customer who is looking to start migrating into their Control Tower environment. They have run into an issue with resource sharing which they need guidance with. They have a VPC which is owne...
1
answers
0
votes
23
views
AWS
asked 16 days ago
Hi, We're using AFT(Account factory for terraform) and although we've provisioned some admin access IAM role into all of our accounts, to my surprise, I just realised that the customizations codepipel...
1
answers
0
votes
37
views
asked 19 days ago
Hi, I created new OU in Control Tower with deployed Landing Zone, enable AWS Backup on this OU, and then remove it. But that OU is kept somewhere in metadata, and it blocks any operations on Control T...
2
answers
0
votes
64
views
asked 25 days ago
Hi, I am studying the AWS Control Tower and managed to provisioned it on my personal environment and I am seeking your expertise in managing the accounts. I have assigned an Administrator (gave Admin...
1
answers
0
votes
38
views
asked a month ago
I'm cleaning up and deleting unused resources to reduce costs. Someone set up AWS Control Tower, and I found a VPC with an IGW that is incurring additional costs despite having no active resources. I'...
1
answers
0
votes
19
views
asked a month ago
Hi all I'm deploying a custom AWS Config conformance pack using Customizations for Control Tower (CfCT). But I'm not sure if the CfCT is downloading the updated yaml cfn file I specified in the "Temp...
1
answers
0
votes
24
views
profile picture
asked a month ago
I have a ControlTower setup on us-east-1 (Home region). But I want to configure CodeCatalyst with SSO login. It seems that CodeCatalyst is only supported on us-west-2 and the IAM Identity Center shoul...
2
answers
0
votes
33
views
AWS
asked a month ago
After a restructuring in ten OUs from aws organizations, we seem to have lost access to controltower. As we understand by reviewing the documentation, the problem is a d-sync between controltower and...
1
answers
0
votes
47
views
asked a month ago
Hey all! I created my new AWS account yesterday and tried to set up AWS Control Tower, but this error message keeps popping up. Things I already tried: 1. Checked my billing and payment details. eve...
1
answers
0
votes
49
views
asked a month ago
Hi all I'm using CfCT and want to specify nested OUs as deployment_targets in the manifest file - https://docs.aws.amazon.com/controltower/latest/userguide/the-manifest-file.html - as follows: ``` ...
Accepted AnswerAWS Control Tower
1
answers
0
votes
37
views
profile picture
asked 2 months ago
Hi all I'd love to deploy a custom AWS Config Conformance Pack using AWS Control Tower Customization Framework (CfCT). In the cfn yaml template, I used an S3 bucket to upload custom conformance pack ...
1
answers
0
votes
34
views
profile picture
asked 2 months ago
Hi all I believe many of AWS clients are suffering from the "extremely noisy" aws-controltower-AggregateSecurityNotifications notification. I could see many complaints on that - https://repost.aws/...
1
answers
0
votes
64
views
profile picture
asked 2 months ago