Which solution will meet these requirements?

1 Comment

  1. Andrea
    Author

    I deduce that the answer is:
    Create an SCP that checks whether the values of the aws:EC2InstanceSourceVPC and aws:SourceVpc condition keys are the same. Deny access if the values are not the same. In the same SCP check, check whether the values of the aws:EC2InstanceSourcePrivateIPv4 and aws:VpcSourceIp condition keys are the same. Deny access if the values are not the same. Apply the SCP to the OU.

Leave a Reply

Your email address will not be published. Required fields are marked *

17 − 7 =