Control Tower Enabled Control

An AWS Control Tower Enabled Control represents a governance rule that has been activated within a landing zone. It shows which controls are currently enforced on accounts or organizational units, helping ensure compliance with best practices and organizational policies.

aws.controltower_enabled_control

Fields

TitleIDTypeData TypeDescription
_keycorestring
account_idcorestring
arncorestringThe ARN of the enabled control.
control_identifiercorestringThe controlIdentifier of the enabled control.
drift_status_summarycorejsonThe drift status of the enabled control.
status_summarycorejsonA short description of the status of the enabled control.
tagscorehstore
target_identifiercorestringThe ARN of the organizational unit.