account
This component is responsible for provisioning the full account hierarchy along with Organizational Units (OUs)
This component is responsible for provisioning the full account hierarchy along with Organizational Units (OUs)
This component is responsible for provisioning information only: it simply populates Terraform state with data (account ids, groups, and roles) that other root modules need via outputs
This component is responsible for provisioning account level settings: IAM password policy, AWS Account Alias, EBS encryption, and Service Quotas
This component is responsible for provisioning SAML metadata into AWS IAM as new SAML providers
This component is responsible for provisioning user and system IAM roles outside the `identity` account
This component is responsible for provisioning all primary user and system roles into the centralized identity account
This component is responsible for authorizing the GitHub OIDC provider as an Identity provider for an AWS account
This component is responsible for creating IAM roles for GitHub Actions to assume
This component is responsible for creating [AWS SSO Permission Sets][1] and creating AWS SSO Account Assignments, that is, assigning IdP (Okta) groups and/or users to AWS SSO permission sets in specific AWS Accounts
This component is responsible for provisioning an S3 Bucket and DynamoDB table that follow security best practices for usage as a Terraform backend