Which solution will meet these requirements?

2 Comments

  1. Michael
    Author

    I plan that the answer is:
    Attach an Organizations SCP with an explicit deny for all iam:CreateUser actions with a condition that includes StringNotLike for aws:username with a value of the exception list.

  2. Caleb
    Author

    I opine that the answer is:
    Attach an Organizations SCP with an explicit deny for all iam:CreateUser actions with a condition that includes StringNotLike for aws:username with a value of the exception list.

Leave a Reply

Your email address will not be published. Required fields are marked *

twelve + eight =