AWS Config - OrganizationConformancePack fails with NoAvailableConfigurationRecorderException

0

We are trying to deploy Organization Conformance Packs via CloudFormation. But the deployment always fails with the below exception: NoAvailableConfigurationRecorderException in 1 account(s)

AWS Config recorder ist configured in the Management Account and we have completed the Prerequisites for Organization Conformance Packs. Trusted service access for AWS Config is enabled in our Organization by creating a multi-account aggregator and adding the organization. Our Cloud Landing Zone is created using Control Tower. Also we've followed this blog post to try the same with a delegated Administrator account. Last but not least we've given the config recorder role admin access and excluded all account except the Management Account in our template. Still no luck. Anyone having an idea how to solve this issue?

1 個回答
0
已接受的答案

Problem is solved. I've found out that one legacy member account which is not enrolled in Control Tower doesn't have Config activated. I've used CLI to deploy and troubleshoot it.

已回答 2 年前

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南