How does an account created via Aws Control Tower "Account factory" differs from the account created via the IAM Identity Center?

0

How does an account created via Aws Control Tower "Account factory" differs from the account created via the IAM Identity Center?

1 回答
1

IAM Identity Center is a service that allows to create users, groups and assign them to multiple AWS accounts or applications. This services helps in centralizing access to your multiple AWS Accounts with the use of SSO, but AWS Identity Center doesn't create AWS Accounts. You must be referring to AWS Organizations.

Back to your question: AWS Control Tower offers a straightforward way to set up and govern an AWS multi-account environment, following prescriptive best practices. AWS Control Tower orchestration extends the capabilities of AWS Organizations, one of them being creating accounts (Account Factory).

The Account Factory is a feature for creating new accounts and bootstrapping them with baselines and guardrails. AWS Organization only creates the account.

References:

AWS
vtjean
已回答 1 年前
profile picture
专家
已审核 1 年前

您未登录。 登录 发布回答。

一个好的回答可以清楚地解答问题和提供建设性反馈,并能促进提问者的职业发展。

回答问题的准则