A company uses AWS Organizations with a single OU named Production to manage multiple accounts. All accounts are members of the Production OU. Administrators use deny list SCPs in the root of the organization to manage access to restricted services.
The company recently acquired a new business unit and invited the new unit’s existing AWS account to the organization. Once onboarded, the administrators of the new business unit discovered that they are not able to update existing AWS Config rules to meet the company’s policies.
Which option will allow administrators to make changes and continue to enforce the current policies without introducing additional long-term maintenance?
Snip
Highly Voted 2 years, 3 months agorobertohyena
Highly Voted 2 years, 3 months agoCpso
Most Recent 3 months, 1 week agohspc_
3 months, 3 weeks agomasetromain
6 months, 1 week agomasetromain
2 years, 2 months agoc73bf38
6 months, 1 week agoAjani
6 months, 1 week agosebnzogang
6 months, 1 week agovictorHugo
1 year, 7 months agodimitry_khan_arc
6 months, 1 week agoDgix
6 months, 1 week agoJOKERO
1 year agofartosh
11 months, 1 week agoawsylum
6 months, 1 week agoawsylum
1 year, 1 month agosoulation
1 month, 1 week agoawsylum
1 year, 1 month agoninomfr64
6 months, 1 week agoatirado
6 months, 1 week agoDmitriKonnovNN
6 months, 1 week agoMikep12357
6 months, 1 week agopravinb
6 months, 2 weeks agoamministrazione
7 months ago