Unable to update Control Tower landing zone, when config recorder managed in audit account has been deleted

0

Steps to reproduce issue :

  • Control tower landing zone is configured
  • Config recorder for audit account has been accidentally deleted through CLI
  • Try to Update Landing zone
  • Failed with error : "AWS Control Tower could not find the configuration recorder for account <audit_account_id> in region <region>. It may have been deleted. Update account under OU the try again, or contact AWS Support. My question is how is the best way to re-create this config recorder.

Thank you for your help.

profile picture
aolfa
質問済み 1年前307ビュー
1回答
1
承認された回答

Hello aolfa, I think redeploying the StackSet 'AWSControlTowerBP-BASELINE-CONFIG' to your audit account would be helpful in resolving your issue I recommend deleting the stack instance for your audit account by following the steps outlined in this document [1], and then recreating the stack instance by updating the StackSet "AWSControlTowerBP-BASELINE-CONFIG" [2]. [1] - https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/stackinstances-delete.html [2] - https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/stackinstances-create.html I hope this method works. :)

profile pictureAWS
回答済み 1年前
profile picture
エキスパート
レビュー済み 1ヶ月前
profile picture
エキスパート
レビュー済み 1年前

ログインしていません。 ログイン 回答を投稿する。

優れた回答とは、質問に明確に答え、建設的なフィードバックを提供し、質問者の専門分野におけるスキルの向上を促すものです。

質問に答えるためのガイドライン

関連するコンテンツ