generated from aws-ia/terraform-repo-template
-
Notifications
You must be signed in to change notification settings - Fork 7
Open
Description
When designating another account other than the management account as the delegated admin for security hub, the module fails to update the security hub configuration
Failed to execute "tofu apply -auto-approve" in ./.terragrunt-cache/JtD9cRCaqNmL3-ffzBA8QVv5k_4/KT2aM4fnf4VM9EGqSaRB3pppAeE
╷
│ Error: updating Security Hub Organization Configuration (): operation error SecurityHub: UpdateOrganizationConfiguration, https response error StatusCode: 401, RequestID: 3283e73c-d400-4916-9a88-72afbcfe829e, InvalidAccessException: Account xxxxxxxxxxxxxxx is not an administrator for this organization
│
│ with module.delegated_admin.aws_securityhub_organization_configuration.this,
│ on .terraform/modules/delegated_admin/modules/organizations_admin/main.tf line 9, in resource "aws_securityhub_organization_configuration" "this":
│ 9: resource "aws_securityhub_organization_configuration" "this" {
│
╵
exit status 1
version 0.0.1
Metadata
Metadata
Assignees
Labels
No labels