View a markdown version of this page

Step 3: Deploy the Spoke stack - Guidance for Account Assessment for AWS Organizations

Step 3: Deploy the Spoke stack

Deploy the Spoke stack to every account that the guidance assesses, including the Hub account if you want to assess it.

  1. Review the changes that AWS CDK deploys.

    $ npm run cdk -- diff account-assessment-for-aws-organizations-spoke \ --profile "${PROFILE_SPOKE}" \ --no-change-set
  2. Deploy the stack.

    $ npm run deploySpoke -- \ --parameters DeploymentNamespace="${DEPLOYMENT_NAMESPACE}" \ --parameters HubAccountId="${HUB_ACCOUNT_ID}" \ --profile "${PROFILE_SPOKE}"
  3. Review the IAM changes when prompted, and confirm the deployment.

  4. Wait for the stack to reach CREATE_COMPLETE or UPDATE_COMPLETE.

Repeat these steps with the AWS CLI profile for each Spoke account.

To assess the Hub account, repeat the Spoke deployment with PROFILE_SPOKE set to the Hub account profile.