DEV Community

miyuki_samitani
miyuki_samitani

Posted on

What is Landing Zone?

Pre-study image

You may have never heard of it.

Research

What is a Landing Zone?

Landing Zone is a mechanism to deploy accounts created based on AWS best practices.
Landing Zone is not a service but a mechanism.
Landing Zone is not a service, but a mechanism to maintain a certain level of security for a large number of accounts.

Landing Zone Features

  • Create an account with all necessary initial settings completed
  • Issue administrative privileges, creating permissions to manage accounts
  • Manage account access via SSO
  • Ensure network baselines are in place
  • Centrally store AWS logs
  • Install guardrails

How to use the Landing Zone

  • Using Control Tower

Control Tower is an easy to set up Landing Zone implementation.

  • Implement on your own

Use Organizations, config, etc. to build your own.
It can be customized freely, but it is difficult to set up.

Image after study

It feels more like a Control Tower feature...
Is that right?

Top comments (0)