@Generated(value="com.amazonaws:aws-java-sdk-code-generator") public class OrganizationAccessDeniedException extends AmazonConfigException
For PutConfigurationAggregator
API, you can see this exception for the following reasons:
No permission to call EnableAWSServiceAccess
API
The configuration aggregator cannot be updated because your AWS Organization management account or the delegated administrator role changed. Delete this aggregator and create a new one with the current AWS Organization.
The configuration aggregator is associated with a previous AWS Organization and AWS Config cannot aggregate data with current AWS Organization. Delete this aggregator and create a new one with the current AWS Organization.
You are not a registered delegated administrator for AWS Config with permissions to call
ListDelegatedAdministrators
API. Ensure that the management account registers delagated administrator
for AWS Config service principle name before the delegated administrator creates an aggregator.
For all OrganizationConfigRule
and OrganizationConformancePack
APIs, AWS Config throws an
exception if APIs are called from member accounts. All APIs must be called from organization master account.
AmazonServiceException.ErrorType
Constructor and Description |
---|
OrganizationAccessDeniedException(String message)
Constructs a new OrganizationAccessDeniedException with the specified error message.
|
getErrorCode, getErrorMessage, getErrorType, getHttpHeaders, getMessage, getProxyHost, getRawResponse, getRawResponseContent, getRequestId, getServiceName, getStatusCode, setErrorCode, setErrorMessage, setErrorType, setHttpHeaders, setProxyHost, setRawResponse, setRawResponseContent, setRequestId, setServiceName, setStatusCode
isRetryable
addSuppressed, fillInStackTrace, getCause, getLocalizedMessage, getStackTrace, getSuppressed, initCause, printStackTrace, printStackTrace, printStackTrace, setStackTrace, toString
public OrganizationAccessDeniedException(String message)
message
- Describes the error encountered.