AWS organizations: How to check an organization's current feature set
Summary
Adds instructions on determining which feature set an organization uses by calling the DescribeOrganization operation (e.g., `aws organizations describe-organization`) and inspecting the FeatureSet field, or viewing it in the console Settings page.
Security assessment
This is a purely operational addition describing how to inspect whether the organization uses the ALL or CONSOLIDATED_BILLING feature set. It has no direct security content, no vulnerability remediation, and involves only a read-only describe operation.
Evidence
To determine which feature set your organization currently uses, run the AWS Organizations [DescribeOrganization](https://docs.aws.amazon.com/organizations/latest/APIReference/API_DescribeOrganization.html) operation (for example, the `aws organizations describe-organization` AWS CLI command).
Diff
diff --git a/organizations/latest/userguide/orgs_manage_org_support-all-features.md b/organizations/latest/userguide/orgs_manage_org_support-all-features.md index 9d4237478..5492b64ae 100644 --- a//organizations/latest/userguide/orgs_manage_org_support-all-features.md +++ b//organizations/latest/userguide/orgs_manage_org_support-all-features.md @@ -21,0 +22,4 @@ If you create an organization with the consolidated billing feature set, you can +**Check which feature set is currently enabled** + +To determine which feature set your organization currently uses, run the AWS Organizations [DescribeOrganization](https://docs.aws.amazon.com/organizations/latest/APIReference/API_DescribeOrganization.html) operation (for example, the `aws organizations describe-organization` AWS CLI command). The `FeatureSet` field in the response is either `ALL` or `CONSOLIDATED_BILLING`. You can also view the feature set on the _Settings_ page of the AWS Organizations console. +