Note_Tech

All technological notes.


Project maintained by simonangel-fong Hosted on GitHub Pages — Theme by mattgraham

AWS - Organizations

Back


AWS Organizations

organ_diagram


Organizational Units (OU) Example

ou_example01

ou_example02

ou_example02


Benefits


Service Control Policies(常考)


SCP Hierarchy

scp_hierarchy_example01

  1. 以上对 Management Account 的 DenyAthena 无效, 因为 full admin power.
  2. AccountA 有授权 Redshift, 但不能与上位法 OU SCP 冲突, 所以无效.

SCP Strategies

scp_blocklist_example

scp_allowlist_example.png


Hands-on

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01

organ_handson01


TOP