Skip to content

Questions tagged with Service Control Policy

Service control policies (SCPs) are a type of organization policy that you can use to manage permissions in your organization.

Content language: English

Filter questions
Select tags to filter
Sort by
Sort by most recent
Filter Questions by:

Browse through the questions and answers listed below or filter and sort to narrow down your results.

82 results
I have delegated management of AWS Organizations and Identity Center to a DedicatedAdmin AWS account. I have setup an identity center group for the Management account. Lets call this group "Mgmt Admi...
2
answers
0
votes
78
views
asked 2 months ago
I tried following the steps: herehttps://repost.aws/questions/QUx25XcQFaQNic0VkqCu3bBw/how-can-i-properly-modify-a-bucket-managed-by-control-tower However, after creating this role to assume and assi...
5
answers
0
votes
120
views
asked 3 months ago
**Problem:** I have an S3 bucket that was created and is managed by AWS Control Tower **Solution:** I need a solution that will allow me to modify the bucket just to change some of the S3 bucket poli...
1
answers
0
votes
91
views
asked 3 months ago
What's the best way to achieve this? **Problem:** I have a situation where I have an external service that is ingesting logs from conrol tower s3 bucket, previously, It was recommended by one o repl...
3
answers
0
votes
118
views
asked 4 months ago
Hi, We would like to understand whether it is possible to enforce Tagging through SCP during S3 Bucket Creations, Dynamo DB Creation, AWS SageMaker AI NoteBook Instance Creation, AWS Glue Creation, A...
3
answers
0
votes
166
views
asked 4 months ago
Hi, I am trying to use Claude 4 model in **eu-central-1** region. Model should be available through inference profile. In Playground, when I try to ask something it throws me an error like: > User:...
1
answers
0
votes
390
views
asked 4 months ago
I have an AWS Free Tier account. I created Lambda functions (Python 3.12) in us-east-2 (Ohio) and us-east-1 (N. Virginia), attaching the AWSLambdaBasicExecutionRole to every function. My code is a mi...
3
answers
0
votes
268
views
asked 4 months ago
i am planning on migrating claude from 3.5 to 4 and also want to implement cross region inference { "Version": "2012-10-17", "Statement": [ { "Sid": "BedrockKnowledgeBaseA...
1
answers
1
votes
273
views
asked 4 months ago
I have checked the documentation of both Service Control Policies (SCPs) and Resource Control Policies (RCPs) and I see that neither type impacts the effective permissions of any service-linked roles....
2
answers
0
votes
128
views
asked 5 months ago
Hello everyone, I'm facing a persistent issue while trying to create an IAM role for the Amazon Selling Partner API (SP-API), and I'm hoping someone in the community might have some insight, as I've ...
2
answers
0
votes
254
views
asked 7 months ago
I'm working on locking down our AMI usage across our org and need to implement some Service Control Policies. I know AWS has some sample policies floating around for this kind of thing. Anyone have a...
1
answers
0
votes
395
views
asked 8 months ago
While I am trying to disable a control in a OU, I am getting the following error OU: ou-dfas--wx12n3h2 Control: [CT.CLOUDFORMATION.PR.1] Disallow management of resource types, modules, and hooks wit...
1
answers
0
votes
239
views
asked 10 months ago
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • Page size
    12 / page