Provision and update accounts using automation - AWS Control Tower

Provision and update accounts using automation

You can provision or update individual accounts in AWS Control Tower by several methods:

Video walkthrough

The Video Walkthrough is designed for automated account provisioning with a script, but the steps also apply to account updating. Use the UpdateProvisionedProduct API instead of the ProvisionProduct API.

A further step of automation by script is to check for Succeed status of the AWS Control Tower UpdateLandingZone lifecycle event. Use it as a trigger to begin updating individual accounts as described in the video. A lifecycle event marks the completion of a sequence of activities, so the occurrence of this event means that a landing zone update is complete. The landing zone update must be complete before account updates begin. For more information about working with lifecycle events, see Lifecycle Events.