amplify-cli icon indicating copy to clipboard operation
amplify-cli copied to clipboard

Create Amplify resources in acc to Control Tower enforced policies

Open sushpatg opened this issue 1 year ago • 1 comments

Is this feature request related to a new or existing Amplify category?

New category

Is this related to another service?

All Categories

Describe the feature you'd like to request

Amplify Deployed resources to follow Control Tower enforced policies as they are the best recommendations documented by AWS

Describe the solution you'd like

Amplify to deploy resources in accordance to best practices. For example AWS Amplify creates a DeploymentBucket with the following characteristics:

  • There's no versioning enabled.
  • No logging policy is applied.

This discrepancy between AWS's recommended deployment practices with AWS Amplify vs the Control Tower's enforced policies https://docs.aws.amazon.com/controltower/latest/userguide/s3-rules.html

Describe alternatives you've considered

And currently, we cannot override the amplify deployment bucket. FR: https://github.com/aws-amplify/amplify-cli/issues/13591

Additional context

NA

Is this something that you'd be interested in working on?

  • [ ] 👋 I may be able to implement this feature request

Would this feature include a breaking change?

  • [ ] ⚠️ This feature might incur a breaking change

sushpatg avatar Feb 26 '24 18:02 sushpatg

:+1: for that.

qfox avatar Apr 16 '15 18:04 qfox

Fixed with #30.

danielbayerlein avatar Jul 02 '16 16:07 danielbayerlein