Which solution should a solutions architect recommend to meet these requirements?

1 Comment

  1. Alan
    Author

    I conclude that the answer is:
    Create an SCP that denies access to all requests that do not target eu-west-2. Use the NotAction element to exempt global services from the restriction. In AWS Organizations, apply the SCP to the root of the organization.

Leave a Reply

Your email address will not be published. Required fields are marked *

1 + 2 =