Account Management, Billing & Support Pt 1 Flashcards
What is AWS Organization?
It’s a Gobal Service that allows to manage Multiple AWS Accounts under a Unique Organization.
Page 379
What are the main benefits of using AWS Organization
- Only One Master Account
- Consolidate Billings
- Having billing beneffits as much Accounts are registered in the Organization.
- Pooling of EC2 along all the accounts in the Organization.
Page 379
Is there a Central Configuration Center in AWS Organization?
YES
With AWS Organization you can centralize de configurations of all AWS Accounts and Automate them
Page 379
Can you use API to work with AWS Organization?
Yes, there is an API to automate AWS account creation
Page 379
What is the role of Service Control Policy (SCP) in AWS Organization?
To Restrict account privileges along all the AWS Accounts in AWS Organization.
Page 379
What could be a good strategy to organize your AWS Organization?
Multiple Account Strategie
(user a differente account for each area)
Page 380
What are the benefits of implementing Multiple Account Strategie
+ Isolate Services and it’s cost
+ Better Auditing
+ Having Multiple Accounts instead of Multiple VPC.
Page 380
In AWS Organization, what is a OU and a OU Root?
Organization Unit
OU Root is the Main Organization Unit that contains another OU.
Page 382
What is a Maste/Managment Account?
It’s the principal account in a OU, each OU that has the privilige to work that its inherited OU Master Accountt granted to it.
The Root OU hast the more prowerfull accout (Master Accout)
Page 382
Does SCP work White/Black List of IAM?
YES
Page 383, 385
SCP can work as IAM as OU and IAM Accounts?
Yes.
it works on OU or IAM Account level
Page 383
What is the default privilege that a SCP has when it has been created?
NOTHING!!
YOU MUST be crear for specifying ALLOW or DENAY access, it cannot be unespecified.
Page 383
Does SCP has effect on Master/Managed Accound?
NO, only on subordinates Account into the OU Root.
Page 384
How Policies work on OU and its inner OU and Accounts?
The Policies of a OU are inherited from the OU Parten to it’s children, so, it’s not possible to set an special policy that is again of a inherited policy.
Page 384
Which acctions can you do once Consolidated Billing is activated, chosse 4?
a. Combine Use of resource
b. Isolate Use of resources
c. Share the Volume Pricing
d. Setting an amount of cost on each OU.
e. Reserved Instances and Savings Plans discounts
f. Seprate Bills
g. One Bill
a. Combine Use of resource.
c. Share the Volume Pricing.
e. Reserved Instances and Savings Plans discounts
g. One Bill
Page 386