AWS Control Tower - SNS notifications

0

Hi Team.

I have installed AWS Control Tower, and I see that sns topics were enabled on Audit Account and every account members. Also I see lambda (named notification forwarder) as subscriptor of sns topic on every account. on the other hand, I see AWS Config was enabled on every account, and it has delivery method to S3 and SNS topic from the Audit Account.

So, I dont understand why there is a sns on every account, if the AWS Config has configured another SNS topic from Audit Account, or when is used sns local and sns audit account?

Thank you.

Orlando
已提问 7 个月前228 查看次数
1 回答
1

Hi Orlando,

The SNS topic in every account has a destination of lambda forwarder, which forwards the notification to the SNS topic in the Audit account which sends an email to the Audit account email ID. Think of it as a notification collection mechanism from member accounts. Also note that the management account does not have an SNS topic created for control tower.

Karn C
已回答 7 个月前
  • Can you please clarify why the management account does not have the SNS topic?

您未登录。 登录 发布回答。

一个好的回答可以清楚地解答问题和提供建设性反馈,并能促进提问者的职业发展。

回答问题的准则