Create account
Create a new account into the organization.

Usage

1
tkm org accounts create \
2
--name <account name> \
3
--email <account email> \
4
[--iam-user-access-to-billing <IAM user access to billing>] \
5
[--role-name <account admin role> ] \
6
[--alias <account alias>] \
7
[--ou <organizational unit>] \
8
[--config-file <path to account config file>]
Copied!

Positional arguments

This command has no positional arguments.

Options

In addition to the common options, this command has the following options.
    --name <name>
      The friendly name of the member account.
      Required.
    --email <email>
      The email address of the owner to assign to the new member account. This email address must not already be associated with another AWS account. You must use a valid email address to complete account creation. You can't access the root user of the account or remove an account that was created with an invalid email address.
      Required.
    --iam-user-access-to-billing <boolean>
      If set to true, the new account enables IAM users to access account billing information if they have the required permissions. Otherwise, only the root user of the new account can access account billing information.
      Optional, defaults to true.
    --role-name <role>
      The name of an IAM role that AWS Organizations automatically preconfigures in the new member account. This role trusts the master account, allowing users in the master account to assume the role, as permitted by the master account administrator. The role has administrator permissions in the new member account.
      Optional, defaults to OrganizationAccountAccessRole.
    --alias <alias>
      The account alias to create.
      Optional.
    --ou <ou>
      Path to the organizational unit where the account should be added.
      Optional, defaults to Root.
    --config-file <file>
      Path to a file containing account specific configuration.
      Optional.

IAM permissions

These are the minimum IAM permissions required to run this command.
1
Statement:
2
- Effect: Allow
3
Action:
4
- organizations:DescribeOrganization
5
- organizations:CreateAccount
6
- organizations:DescribeCreateAccountStatus
7
- organizations:ListRoots
8
- organizations:ListTargetsForPolicy
9
- organizations:ListAWSServiceAccessForOrganization
10
- organizations:DescribePolicy
11
- organizations:ListPolicies
12
- organizations:ListAccountsForParent
13
- organizations:ListAccounts
14
- organizations:DescribeOrganization
15
- organizations:ListOrganizationalUnitsForParent
16
- organizations:MoveAccount
17
Resource: "*"
Copied!

Examples

Create a new account with email [email protected] and name example.
1
tkm org accounts create \
2
3
--name example
Copied!
Create a new account to organiational unit Root/Examples.
1
tkm org accounts create \
2
3
--name example \
4
--ou Root/Examples
Copied!
Last modified 4mo ago