I'm getting an error to enroll account into control tower, though my colleague is able to enroll new account with the same permission.
Error Details:- An unknown error occurred. Try again later, or contact AWS Support. No launch paths found for resource: prod-xxxxxxxxxxxx
AWS Control Tower can't create your account due to potential drift in your landing zone. Check your landing zone and try using the advanced account provisioning method to create your account.
Note: There is no Drift in our landing zone
I tried all the possible solution but still the same error exists. Does anyone face the same issue?
This error message is generated by AWS Service Catalog, which is the integrated service that helps provision accounts in AWS Control Tower.
Common Causes:
I got this error when I want to enroll an account on Account Account factory on Control Tower
AWS Control Tower can't create your account due to potential drift in your landing zone. Check your landing zone and try using the advanced account provisioning method to create your account.
Then I find this document and repair Landing zone from landing zone settings works for me:
https://docs.aws.amazon.com/controltower/latest/userguide/drift.html
Resolving drift
Although detection is automatic, the steps to resolve drift must be done through the console.
Many types of drift can be resolved through the Landing zone settings page. You can choose the Repair button in the Versions section to repair these types of drift.
If your OU has fewer than 300 accounts, you can repair drift by selecting Re-register OU on the OU page, to repair drift in Account Factory provisioned accounts, or SCP drift.
This is what I followed in sequence.
The technical post webpages of this site follow the CC BY-SA 4.0 protocol. If you need to reprint, please indicate the site URL or the original address.Any question please contact:yoyou2525@163.com.