Control Tower - Account Factory - No launch paths found for resource: prod-2dlxxxx

1

Hi,

I'm currently suing an AWS Organization deployed with ControlTower.

I've creates a new PermissionSet with AdministratorAccess AWS managed polocies that I applied to the management account .

When I go to the controlTower Account Factory I got the following message "No launch paths found for resource: prod-2dlxxxx"

Can You please help me with that issue ?

Regards

FabienG
已提問 1 年前檢視次數 1208 次
1 個回答
1
已接受的答案

Hi, That is likely due to the Permission Set/Role you are using not being allowed to use the Account Factory Product/Portfolio in Service Catalog. https://docs.aws.amazon.com/controltower/latest/userguide/troubleshooting.html#no-launch-paths-found

Alongside the notes above, to fix the permissions you can: Go to the Service Catalog service in the AWS Console. Under Administration in the left menu, select Portfolios. You should see a "AWS Control Tower Account Factory Portfolio". Click on that name. There will be a tab "Access", select that and you will see a list of identities that have permissions to use this portfolio and products. Use the Grant Access button to add your Role to that list. Due to being logged in via SSO and Permission Sets, your role will match something like aws-reserved/sso.amazonaws.com/<region>/AWSReservedSSO_<Permission Set name>_<unique identifier>

profile pictureAWS
已回答 1 年前
  • Thanks for your help and quick answer. This is working fine.

  • I followed the advice, logged in as administrator, and I still get the error message. Any other suggestions?

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南