Which solution will meet these requirements with the LEAST operational overhead?

2 Comments

  1. Gregory
    Author

    I reckon the answer is:
    Create an SCP that has an aws:RequestedRegion condition that denies actions that are not in the designated Region. Attach the SCP to the AWS account in AWS Organizations.

  2. Pamela
    Author

    From my perspective, the answer is:
    Create an SCP that has an aws:RequestedRegion condition that denies actions that are not in the designated Region. Attach the SCP to the AWS account in AWS Organizations.

Leave a Reply

Your email address will not be published. Required fields are marked *

nine + 8 =