Skip to content
Gallery
4. AWS Organizations and Control Tower
Share
Explore
AWS Organizations

icon picker
Managing policies in AWS Organizations

Policies in AWS Organizations enable you to apply additional types of management to the AWS accounts in your organization. You can use policies when in your organization.
The AWS Organizations console displays the enabled or disabled status for each policy type. On the Organize accounts tab, choose the Root in the left navigation pane. The details pane on the right side of the screen shows all of the available policy types. The list indicates which are enabled and which are disabled in that organization root. If the option to Enable a type is present, that type is currently disabled. If the option to Disable a type is present, that type is currently enabled.

Policy types

Organizations offers policy types in the following two broad categories:

Authorization policies

Authorization policies help you to centrally manage the security of the AWS accounts in your organization.
offer central control over the maximum available permissions for all of the accounts in your organization.

Management policies

Management policies enable you to centrally configure and manage AWS services and their features.
enable you to control data collection for AWS AI services for all of your organization's accounts.
help you centrally manage and apply backup plans to the AWS resources across your organization's accounts.
help you standardize the tags attached to the AWS resources in your organization's accounts.
The following table summarizes some of the characteristics of each policy type. For additional characteristics about these policy types, see .
image.png

Want to print your doc?
This is not the way.
Try clicking the ⋯ next to your doc name or using a keyboard shortcut (
CtrlP
) instead.