Posted On: Jun 5, 2023

Today, AWS CloudFormation StackSets provides customers with three new APIs to activate, deactivate, and describe AWS Organization trust access needed to get started with service-managed StackSets. You can use service-managed StackSets to centrally manage stack deployments to AWS accounts in one or more organizational units (OUs). With this launch, you can programmatically manage trust access for your management or delegated administrator accounts. Activating trust access provides the necessary permissions for your management or delegated administrator accounts to create and manage service-managed stack sets for your AWS Organizations. In addition to providing this trust access in AWS CloudFormation via AWS Management Console, you can now choose to manage trust access with these newly launched APIs.

These APIs are beneficial to customers who have developed applications such as Landing Zones using StackSets. Such customers use StackSets as a foundation to streamline the process of setting up and managing their cloud infrastructure across multiple AWS accounts and OUs. StackSets help ensure consistency and scalability while saving time in replicating cloud infrastructure in a single operation. These new APIs will enable the automation of trust access management, allowing for a smoother experience for customers using such applications. 

These APIs are available in AWS Regions where AWS CloudFormation StackSets is available. Refer to the AWS Region table to see AWS Regions where StackSets is available. To learn more, visit CloudFormation StackSets documentation.