Close AWS accounts using the Stax Console
AWS accounts can now be closed using the Stax Console. Read more.
Added
View All TagsAWS accounts can now be closed using the Stax Console. Read more.
AWS accounts can now be closed using the Stax API. This functionality will be available in the Stax Console in the future. Read more.
A new Rule has been released to allow organizations to check that all Lambda Functions are in use, defined by a configurable threshold.
To enable this Rule, see Add a Rule from the Catalog.
You can now use Stax to manage peering between your Stax Networking Hub and another Stax Networking Hub, or with a standalone AWS Transit Gateway. Read more.
A new Rule has been released to allow organizations to validate that Security Hub is enabled in all Stax-managed AWS accounts in all regions with active resources.
To enable this Rule, see Add a Rule from the Catalog.
The customer carbon footprint tool is now available in all Stax-managed AWS Organizations.
Compute Optimizer is now enabled in the management account of Stax-managed AWS Organizations as part of Stax Assurance. All accounts within the AWS Organization are opted in to the service.
EC2, EC2 AutoScaling, EBS, and Lambda recommendations are exported to the logging account weekly. The recommendations are exported on Sundays at 2200 UTC (0900 Monday AEDT).
Access the Compute Optimizer Dashboard in the logging account to see Compute Optimizer's recommendations.
Stax now supports disabling invitations for local users. A local user is one which does not authenticate via a configured Single Sign-On Identity Provider (SSO IdP).
By default, administrators of a Stax tenancy can invite users directly to Stax, at which point they can create a password and log into Stax. Alternatively, administrators can grant users access to Stax via the organization's SSO IdP. Users logging in to Stax via Single Sign-On are created just-in-time and do not need to be invited to Stax first.
If you wish to disable the ability for administrators to invite new local users to Stax, please raise a support case.
See Enforce Single Sign-On for more detail.
For Stax-managed AWS Organizations with an account ownership model whereby the management account is owned by a reseller, AWS Backup can now be configured in member accounts.
For those with customer-owned management accounts, AWS Backup has been configurable for some time. If AWS Backup is already enabled, no change has been made.
If not already enabled, the cross-account feature of AWS Backup has been enabled for all member accounts in Stax-managed AWS Organizations. This allows for secure copying of backups across one or more AWS accounts in your AWS Organization.
Stax's new Public Exposure Rule Bundle contains Rule definitions designed to help you monitor your environment for common misconfigurations that can cause resources and information to be inadvertently exposed.
Combined with Real-Time Rule Alerts and Notifications, this Bundle allows you to be easily notified when a resource enters a state of non-compliance. Rules provided by this Bundle aim to provide guidance around keeping private your EC2, EBS, RDS, ElasticSearch, and other native AWS resources.
Add the Bundle to Stax to get going. Once added, Stax will perform an initial evaluation and populate the Rules page with new results. You can filter the page to show only results from the Public Exposure Bundle if preferred.