Web: https://www.reddit.com/r/aws/comments/s35xc8/adding_a_new_root_account_over_an_existing_root/

Jan. 13, 2022, 6:21 p.m. | /u/ChineseFountain

Amazon Web Services (AWS): S3, EC2, SQS, RDS, DynamoDB, IAM, CloudFormation, Route 53, VPC and more reddit.com

I work at a startup and have inherited our AWS infrastructure. Our root production account is the one that everyone has IAM users on, and the account where our production resources actually live.

I would like to move to an organization structure with separate accounts for different environment, and I have already started doing so for staging.

My question is: is it not ideal to have the root account be the one that production runs out of? I feel like it would be better to put prod in a sub-account …

aws

More from reddit.com / Amazon Web Services (AWS): S3, EC2, SQS, RDS, DynamoDB, IAM, CloudFormation, Route 53, VPC and more

DevOps Software Engineer

@ Sinch | Malmö, Skåne County, Sweden

Senior Staff Engineer, Cloud Systems

@ Life360 | Remote, USA

Junior DevOps Engineer

@ SmartBear | Wrocław, Lower Silesian Voivodeship, Poland

Senior DevOps Engineer - Data Engineering

@ Life360 | Ukraine

DevOps Engineer , Team Lead ( Remote )

@ AssistRx | Remote - Orlando, Florida, United States

Senior DevSecOps

@ Prodigy Education | Oakville, Ontario