AWS Config - OrganizationConformancePack fails with NoAvailableConfigurationRecorderException

0

We are trying to deploy Organization Conformance Packs via CloudFormation. But the deployment always fails with the below exception: NoAvailableConfigurationRecorderException in 1 account(s)

AWS Config recorder ist configured in the Management Account and we have completed the Prerequisites for Organization Conformance Packs. Trusted service access for AWS Config is enabled in our Organization by creating a multi-account aggregator and adding the organization. Our Cloud Landing Zone is created using Control Tower. Also we've followed this blog post to try the same with a delegated Administrator account. Last but not least we've given the config recorder role admin access and excluded all account except the Management Account in our template. Still no luck. Anyone having an idea how to solve this issue?

1 Respuesta
0
Respuesta aceptada

Problem is solved. I've found out that one legacy member account which is not enrolled in Control Tower doesn't have Config activated. I've used CLI to deploy and troubleshoot it.

respondido hace 2 años

No has iniciado sesión. Iniciar sesión para publicar una respuesta.

Una buena respuesta responde claramente a la pregunta, proporciona comentarios constructivos y fomenta el crecimiento profesional en la persona que hace la pregunta.

Pautas para responder preguntas