Can we have multiple delegated admins for AWS Config in an AWS Organizaton?

0

Please advise if it is possible to have multiple (limit is 3) delegated administrator for AWS Config setup. This will allow us to demarcate the Config for different environments like Regulated, Unregulated etc in an AWS Organization? I am planning to use 3 different member accounts have the role of delegated administrator account for AWS Config for the specific set of member accounts. Many thanks

1 個回答
0
已接受的答案

AWS Config supports only one Delegated Administrator. Alternatively, you can use multiple aggregators to separate Config data. See here for a step-by-step guide to create an aggregator. This will not distribute permissions to manage Config rules across multiple accounts, but allows to view the resource configuration and compliance data recorded in AWS Config across multiple specified accounts.

profile pictureAWS
Michael
已回答 1 個月前
profile picture
專家
已審閱 1 個月前
  • Hi, Thanks for your answer. But the tutorial states "The maximum number of delegated admins that the management account can assign for AWS Config (config.amazonaws.com) is 3." What does this indicate?

  • You can have up to 3 delegated admin account. You can just set up different aggregator for each delegated admin to target a different subset of member accounts.

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南