Enabling and Disabling the SCP Type
Enabling the SCP Type
Before you create and attach an SCP to OUs and accounts, you have to enable the SCP type from the organization's management account. After the SCP type is enabled, Organizations automatically attach the FullAccess policy (allowing for all operations) to all OUs and accounts.
- Log in to the management console as the organization administrator or using the management account, and navigate to the Organizations console.
- On the Policies page, click Enable in the Operation column of the service control policies.
- In the displayed dialog box, select the check box and click OK.
Figure 1 Enabling the SCP type
Disabling the SCP type
If you no longer want to use SCPs to manage permissions for your organization, you can disable the SCP type from the organization's management account.
- After the SCP type is disabled in an organization, all SCPs are automatically detached from all OUs and accounts in the organization. However, the SCPs are not deleted.
- If you disable the SCP type and then enable it again, the FullAccess SCP is still attached to all entities in the organization and attachments of other SCPs are lost. If you want to re-enable them, you must re-attach them to the entities.
- Log in to the management console as the organization administrator or using the management account, and navigate to the Organizations console.
- On the Policies page, click Disable in the Operation column of the service control policies.
Figure 2 Disabling the SCP type
- Click OK in the displayed dialog box.
Feedback
Was this page helpful?
Provide feedbackThank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot