What is the difference between an AWS IAM Group and an Organizational Unit?

1.7k views Asked by At

I'm investigating users and groups in AWS and have some confusion regarding an AWS IAM Group and an Organizational Unit. They both seem to implement the same functionality such as organizing like accounts with similar tasks and assigning policies to groups of accounts. What are the differences? Any further insight would be appreciated.

1

There are 1 answers

4
jellycsc On BEST ANSWER

An IAM group is a collection of IAM users, while an OU is a group of AWS accounts.