Use a web UI to view resource-based policy dependencies for your AWS Organizations AWS accounts
Overview
The Account Assessment for AWS Organizations solution aims to assist businesses in better understanding their AWS Organizations by providing an automated scan of accounts, services, and service/resource policies. It provides visibility into the dependencies of AWS accounts to quickly identify trusted access enabled services and accounts with delegated administrator access, as well as identity-based and resource-based policies. This allows businesses to quickly review, consolidate, and migrate accounts with confidence while improving operational efficiency.
Architecture
Features of the solution
Account Assessment for AWS Organizations architecture on AWS
Delegated Admin Accounts scan
Trusted Access scan
Resource-Based Policies scan
Resources
Reference architecture