AWS controltower: Documentation URL formatting fixes
Summary
Corrected multiple URLs by removing double slashes in paths to ensure proper linking and accessibility.
Security assessment
The evidence line shows a URL correction without altering security content, addressing documentation accuracy rather than vulnerabilities or security features.
Evidence
+ * [`CT.EC2.PR.15`](https://docs.aws.amazon.com/controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-15-description)
Diff
diff --git a/controltower/latest/userguide/2025-all.md b/controltower/latest/userguide/2025-all.md index c611cfb72..aff3f3066 100644 --- a//controltower/latest/userguide/2025-all.md +++ b//controltower/latest/userguide/2025-all.md @@ -165 +165 @@ For more information about auto-enrollment, see [Optionally configure auto-enrol -This release also includes an update to a managed policy and a new managed policy. We updated the [AWSControlTowerServiceRolePolicy](https://docs.aws.amazon.com//controltower/latest/userguide/managed-policies-table.html) and added the new [AWSControlTowerIdentityCenterManagementPolicy](https://docs.aws.amazon.com//controltower/latest/userguide/managed-policies-table.html). +This release also includes an update to a managed policy and a new managed policy. We updated the [AWSControlTowerServiceRolePolicy](https://docs.aws.amazon.com/controltower/latest/userguide/managed-policies-table.html) and added the new [AWSControlTowerIdentityCenterManagementPolicy](https://docs.aws.amazon.com/controltower/latest/userguide/managed-policies-table.html). @@ -226 +226 @@ AWS Control Tower has updated the eight proactive controls in the Control Catalo - * [`CT.EC2.PR.15`](https://docs.aws.amazon.com//controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-15-description) + * [`CT.EC2.PR.15`](https://docs.aws.amazon.com/controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-15-description) @@ -228 +228 @@ AWS Control Tower has updated the eight proactive controls in the Control Catalo - * [`CT.EC2.PR.16`](https://docs.aws.amazon.com//controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-16-description) + * [`CT.EC2.PR.16`](https://docs.aws.amazon.com/controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-16-description) @@ -230 +230 @@ AWS Control Tower has updated the eight proactive controls in the Control Catalo - * [`CT.EC2.PR.17`](https://docs.aws.amazon.com//controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-17-description) + * [`CT.EC2.PR.17`](https://docs.aws.amazon.com/controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-17-description) @@ -232 +232 @@ AWS Control Tower has updated the eight proactive controls in the Control Catalo - * [`CT.EC2.PR.18`](https://docs.aws.amazon.com//controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-18-description) + * [`CT.EC2.PR.18`](https://docs.aws.amazon.com/controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-18-description) @@ -234 +234 @@ AWS Control Tower has updated the eight proactive controls in the Control Catalo - * [`CT.EC2.PR.19`](https://docs.aws.amazon.com//controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-19-description) + * [`CT.EC2.PR.19`](https://docs.aws.amazon.com/controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-19-description) @@ -236 +236 @@ AWS Control Tower has updated the eight proactive controls in the Control Catalo - * [`CT.EC2.PR.20`](https://docs.aws.amazon.com//controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-20-description) + * [`CT.EC2.PR.20`](https://docs.aws.amazon.com/controltower/latest/controlreference/ec2-rules.html#ct-ec2-pr-20-description) @@ -297 +297 @@ AWS Control Tower now supports [AWS PrivateLink](https://aws.amazon.com/privatel -With this release, AWS Control Tower expands to include support for 10 industry frameworks. For a list of frameworks, see [Frameworks supported](https://docs.aws.amazon.com//controltower/latest/controlreference/frameworks-supported.html). +With this release, AWS Control Tower expands to include support for 10 industry frameworks. For a list of frameworks, see [Frameworks supported](https://docs.aws.amazon.com/controltower/latest/controlreference/frameworks-supported.html). @@ -299 +299 @@ With this release, AWS Control Tower expands to include support for 10 industry -For example, you can get started by navigating to the Control Catalog page in the AWS Control Tower console and searching for a framework, such as **PCI-DSS-v4.0** , to view all controls related to that framework. Or you can examine controls and frameworks programmatically, by calling the new [`ListControlMappings`](https://docs.aws.amazon.com//controlcatalog/latest/APIReference/API_ListControlMappings.html) API. +For example, you can get started by navigating to the Control Catalog page in the AWS Control Tower console and searching for a framework, such as **PCI-DSS-v4.0** , to view all controls related to that framework. Or you can examine controls and frameworks programmatically, by calling the new [`ListControlMappings`](https://docs.aws.amazon.com/controlcatalog/latest/APIReference/API_ListControlMappings.html) API. @@ -303 +303 @@ The metadata definitions associated with controls are changing, to better suppor -In the console and the API, we introduced 3 new metadata fields. Collectively, these fields describe a hierarchy that helps you understand how to categorize and enable controls. The fields are: **Domain** , **Objective** , and [**Common control**](https://docs.aws.amazon.com//controltower/latest/controlreference/common-controls-list.html). We have redefined our [control objectives](https://docs.aws.amazon.com/controltower/latest/controlreference/control-catalog-objectives.html) to align better with the broader scope of industry frameworks that are available. For more information about this hierarchy, see [Ontology overview](https://docs.aws.amazon.com/controlcatalog/latest/userguide/ontology-overview.html). +In the console and the API, we introduced 3 new metadata fields. Collectively, these fields describe a hierarchy that helps you understand how to categorize and enable controls. The fields are: **Domain** , **Objective** , and [**Common control**](https://docs.aws.amazon.com/controltower/latest/controlreference/common-controls-list.html). We have redefined our [control objectives](https://docs.aws.amazon.com/controltower/latest/controlreference/control-catalog-objectives.html) to align better with the broader scope of industry frameworks that are available. For more information about this hierarchy, see [Ontology overview](https://docs.aws.amazon.com/controlcatalog/latest/userguide/ontology-overview.html). @@ -309 +309 @@ In the console and the API, we introduced 3 new metadata fields. Collectively, t - * Each control now has a new field called `GovernedResources`, which shows the resource types that the control governs. In some cases, this field shows the service prefix for the resources, and in other instances, it can be blank. For more information, see [`GetControl`](https://docs.aws.amazon.com//controlcatalog/latest/APIReference/API_GetControl.html) and [`ListControls`](https://docs.aws.amazon.com//controlcatalog/latest/APIReference/API_ListControls.html). + * Each control now has a new field called `GovernedResources`, which shows the resource types that the control governs. In some cases, this field shows the service prefix for the resources, and in other instances, it can be blank. For more information, see [`GetControl`](https://docs.aws.amazon.com/controlcatalog/latest/APIReference/API_GetControl.html) and [`ListControls`](https://docs.aws.amazon.com/controlcatalog/latest/APIReference/API_ListControls.html). @@ -349 +349 @@ The intended functionality of controls, when implemented by service-linked AWS C -As part of this release, we added four new permissions to the policy for the service-linked role (SLR) [`AWSServiceRoleForAWSControlTower`](https://docs.aws.amazon.com//controltower/latest/userguide/access-control-managing-permissions.html#AWSServiceRoleForAWSControlTower), so that you can enable and disable service-linked AWS Config rules for your enrolled accounts. +As part of this release, we added four new permissions to the policy for the service-linked role (SLR) [`AWSServiceRoleForAWSControlTower`](https://docs.aws.amazon.com/controltower/latest/userguide/access-control-managing-permissions.html#AWSServiceRoleForAWSControlTower), so that you can enable and disable service-linked AWS Config rules for your enrolled accounts. @@ -385 +385 @@ For more information, see [Deploy AWS Control Tower Account Factory for Terrafor -You can now view _drift_ and _account enrollment_ statuses programmatically for your governed accounts, by calling the baseline APIs. With this capability, you can identify when account and OU baseline configurations are _drifted_ , or out of sync. To view the drift status programmatically, you can call the [`ListEnabledBaselines`](https://docs.aws.amazon.com//controltower/latest/APIReference/API_ListEnabledBaselines.html) API for your enabled baselines. To view statuses for individual accounts programmatically with the `ListEnabledBaselines` API, use the `includeChildren` flag. You can filter by these statuses, and see only the accounts and OUs that require your attention. +You can now view _drift_ and _account enrollment_ statuses programmatically for your governed accounts, by calling the baseline APIs. With this capability, you can identify when account and OU baseline configurations are _drifted_ , or out of sync. To view the drift status programmatically, you can call the [`ListEnabledBaselines`](https://docs.aws.amazon.com/controltower/latest/APIReference/API_ListEnabledBaselines.html) API for your enabled baselines. To view statuses for individual accounts programmatically with the `ListEnabledBaselines` API, use the `includeChildren` flag. You can filter by these statuses, and see only the accounts and OUs that require your attention. @@ -387 +387 @@ You can now view _drift_ and _account enrollment_ statuses programmatically for -The [`AWSControlTowerBaseline`](https://docs.aws.amazon.com//controltower/latest/userguide/types-of-baselines.html#ou-baseline-types) sets up best practice configurations, controls, and resources that are required for governance. When you enable this baseline on an organizational unit (OU), member accounts within the OU are enrolled into AWS Control Tower automatically. The AWS Control Tower baseline APIs include CloudFormation support, which allows you to build automations that manage your OUs and accounts with infrastructure as code (IaC). +The [`AWSControlTowerBaseline`](https://docs.aws.amazon.com/controltower/latest/userguide/types-of-baselines.html#ou-baseline-types) sets up best practice configurations, controls, and resources that are required for governance. When you enable this baseline on an organizational unit (OU), member accounts within the OU are enrolled into AWS Control Tower automatically. The AWS Control Tower baseline APIs include CloudFormation support, which allows you to build automations that manage your OUs and accounts with infrastructure as code (IaC). @@ -389 +389 @@ The [`AWSControlTowerBaseline`](https://docs.aws.amazon.com//controltower/latest -To learn more about these APIs, review [Baselines](https://docs.aws.amazon.com//controltower/latest/userguide/types-of-baselines.html) in the _AWS Control Tower User Guide_. The baseline APIs and newly launched reporting capabilities for _drift_ and _account enrollment_ status are available in all AWS Regions where AWS Control Tower is available. For a list of AWS Regions where AWS Control Tower is available, see the [AWS Region Table](https://aws.amazon.com/about-aws/global-infrastructure/regional-product-services/). +To learn more about these APIs, review [Baselines](https://docs.aws.amazon.com/controltower/latest/userguide/types-of-baselines.html) in the _AWS Control Tower User Guide_. The baseline APIs and newly launched reporting capabilities for _drift_ and _account enrollment_ status are available in all AWS Regions where AWS Control Tower is available. For a list of AWS Regions where AWS Control Tower is available, see the [AWS Region Table](https://aws.amazon.com/about-aws/global-infrastructure/regional-product-services/).