AWS Organizations

Importing data from AWS Organizations into ZIlla is a 3-step process:

  1. Create an AWS Organizations application instance in Zilla.

  2. Create Zilla-SSO-Reader-Role in Management Account of AWS Organization and create Zilla-IAM-Reader-Role in all Member accounts of AWS Organization. AWS Organization - Creating Zilla-IAM-Reader-Role And Zilla-SSO-Reader-Role

  3. Import AWS SSO Users, Groups and Group Members via API Integration in the AWS Organizations application instance: AWS Organization - API Integration.

Note:

In step 3, the status value for AWS SSO users will be imported using SCIM endpoint and SCIM token should be provided. This SCIM token will only be used by Zilla for ‘read’ operations.

If SCIM is not configured, use the browser extension sync to update the status value for AWS SSO users: AWS Organization - Browser Extension.