Why to apply this fix
This is a cost prevention measure and, therefore, no dollar value estimates can exist. These are best practices.
How to apply this fix
Create a new Service Control policy in AWS Organizations and ensure it is attached to the root OU. Block all regions except the ones in use, gpu type p-series instances, and gp2 volume creation.
- AWS Organization is set up.
- All accounts are linked to the organization.
- You have Administrator access.
- Service Control Policies and All Features are enabled within AWS Organizations.
- The current existing policies are within quota.