Tried to enable Control Tower with defaults but it failed to activate the accounts and couldn't finish the landing zone process

0

Hi,

I'm really confused on what just happened. I didn't have any prior IAM accounts / OU's just my root account with billing attached. I tried to enable control tower with the default OU's Sandbox, and Security + the recommended Log Archive and Audit accounts.

Everything was pretty much default.

After waiting 24 hours, I tried to load control tower and it gave me the following error: "AWS Control Tower failed to set up your landing zone completely: AWS Control Tower cannot complete the operation because activation of account [REDACTED] is not complete. Try again in one hour. If this error persists, contact AWS Support."

Every time I tried to retry the Control Tower setup, it would complain that one was already set up. So I figured I'd try to just delete the identity center accounts and I think it led me to the problem. It wanted me to "Complete account sign up" for each of the accounts that control tower created so, add a billing card, and perform the phone call pin verification.

I was under the impression that control tower would handle the creation and activation of those accounts. Does it really expect me to log into each one and add billing and do phone pin verification? Super lost..

Thanks in advance!

bp1313
已提问 6 个月前255 查看次数
1 回答
0

Hello, To answer your question, we require details that are non-public information. Please open a support case with AWS using the following link - https://support.console.aws.amazon.com/support/home#/case/create

AWS
支持工程师
已回答 5 个月前

您未登录。 登录 发布回答。

一个好的回答可以清楚地解答问题和提供建设性反馈,并能促进提问者的职业发展。

回答问题的准则