Policy: AWS > Well-Architected Tool > AWS Well-Architected Framework > Cost Optimization > COST 02. How do you govern usage? > Implement groups and roles
Implement groups and roles that align to your policies and control who can create, modify, or decommission instances and resources in each group. For example, implement development, test, and production groups. This applies to AWS services and third-party solutions.
See Implement groups and roles for more information.
Resource Types
This policy targets the following resource types:
Primary Policy
This policy is used with the following primary policy:
Controls
- AWS > Well-Architected Tool > AWS Well-Architected Framework > Cost Optimization
- AWS > Well-Architected Tool > AWS Well-Architected Framework > Cost Optimization > COST 02. How do you govern usage?
Policy Specification
Schema Type |
|
---|---|
Default |
|
Valid Values [YAML] |
|
Category
In Your Workspace
Developers
- tmod:@turbot/turbot#/control/categories/other
- tmod:@turbot/aws-wellarchitected-framework#/policy/types/cost02GroupsRoles
- turbot graphql policy-type --id "tmod:@turbot/aws-wellarchitected-framework#/policy/types/cost02GroupsRoles"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/aws-wellarchitected-framework#/policy/types/cost02GroupsRoles"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI