1 Answers
AFAIK, no, not within a single AWS account.
Within the scope of AWS Organizations, Service Control Policies can be used to limit the IAM permissions that may be applied within member accounts of the Organization.
Sign Up Free or Log In to participate!
Is there a way to limit which right an user with IAMAdministrator access grant to another user that he created?
AFAIK, no, not within a single AWS account.
Within the scope of AWS Organizations, Service Control Policies can be used to limit the IAM permissions that may be applied within member accounts of the Organization.
Psst…this one if you’ve been moved to ACG!
And remember the SCP does not apply to the root account