A company uses AWS Organizations with a single OU named Production to manage multiple accounts. All accounts are members of the Production OU. Administrators use deny list SCPs in the root of the organization to manage access to restricted services.
The company recently acquired a new business unit and invited the new unit’s existing AWS account to the organization. Once onboarded, the administrators of the new business unit discovered that they are not able to update existing AWS Config rules to meet the company’s policies.
Which option will allow administrators to make changes and continue to enforce the current policies without introducing additional long-term maintenance?
Snip
Highly Voted 2 years, 8 months agorobertohyena
Highly Voted 2 years, 8 months agonayeh
Most Recent 3 weeks, 2 days agoprincajen
1 month, 2 weeks agoMasterVivek
1 month, 3 weeks agokvin97
2 months, 1 week agocalcinator423
2 months, 4 weeks agoMarkM1
3 months agoCpso
8 months agohspc_
8 months, 2 weeks agomasetromain
11 months agomasetromain
2 years, 7 months agoc73bf38
11 months agoAjani
11 months agosebnzogang
11 months agovictorHugo
1 year, 11 months agodimitry_khan_arc
11 months agoDgix
11 months agoJOKERO
1 year, 5 months agofartosh
1 year, 3 months agoawsylum
11 months agoawsylum
1 year, 5 months agosoulation
6 months agoawsylum
1 year, 5 months ago