all DevOps news
Adding a new root account *over* an existing root account?
Amazon Web Services (AWS): S3, EC2, SQS, RDS, DynamoDB, IAM, CloudFormation, Route 53, VPC and more reddit.com
I work at a startup and have inherited our AWS infrastructure. Our root production account is the one that everyone has IAM users on, and the account where our production resources actually live.
I would like to move to an organization structure with separate accounts for different environment, and I have already started doing so for staging.
My question is: is it not ideal to have the root account be the one that production runs out of? I feel like it would be better to put prod in a sub-account …!-->