Providing users, groups, or roles access to AWS WA Tool - AWS Well-Architected Tool

We have released a new version of the Well-Architected Framework. We also added new and updated lenses to the Lens Catalog. Learn more about the changes.

Providing users, groups, or roles access to AWS WA Tool

In this step, you grant access to AWS WA Tool.

Provide access to AWS WA Tool
  1. To provide access, add permissions to your users, groups, or roles:

  2. To grant full control, apply the WellArchitectedConsoleFullAccess managed policy to the permission set or role.

    Full access allows the principal to perform all actions in AWS WA Tool. This access is required to define workloads, delete workloads, view workloads, update workloads, share workloads, create custom lenses, and share custom lenses.

  3. To grant read-only access, apply the WellArchitectedConsoleReadOnlyAccess managed policy to the permission set or role. Principals with this role can only view resources.

For more information on these policies, see AWS managed policies for AWS Well-Architected Tool.