ZeroWaste is our cost optimization report that helps you quickly identify any possible waste within different areas of your AWS environment. The report is a monthly “health check” report that gives you quick understanding and analysis that surfaces possible areas where you can save money.
There are two steps to set up #ZeroWaste and grant us the correct permissions:
- Master / Simple Account setup via CloudFormation Template - This will enable ZeroWaste permissions for one master payer account.
- Sub-account setup with CloudFormation Stackset - This will enable ZeroWaste permissions for all your sub-accounts, not including your master payer account.
If you have a simple setup with no sub-accounts, you only need to go through
Master / Simple account setup. However, if you have a Master Payer Account AND sub-accounts, we highly recommend completing both steps.
To see the full permissions being granted, you can view them here: ZeroWaste CloudFormation Template
To get started with ZeroWaste permission setup, Click See
IAM Configuration Steps to expand all the instructions and reveal the direct link to launch CloudFormation stacks.
If promoted, please login with your AWS master payer account.
RoleNamein the CloudFormation stack matches with what’s in CloudForecast and Check off
I acknowledge that AWS CloudFormation might create IAM resources with custom names.
Wait a few minutes until
Create_Completeis shown. You can press the refresh button to update status.
Navigate back to CloudForecast and look under the status column to confirm setup with the row. There should be a green checkmark in the row this was setup for.
- If you have only have one master payer account/no sub-accounts and/or if you would only like to set this up for only your master payer account, the setup is complete.
- Continue on if you would like to set this up for all your sub-accounts. The following setup process uses CloudFormation StackSet to apply permissions across all your sub-accounts.
Login to AWS Console - Navigate to CloudFormation in your AWS console: Direct Link to AWS CloudFormation
Choose a Template - Paste in the following under Amazon S3 URL:
Specify StackSet details - Enter in a
Description. Navigate back to the CloudForecast app and copy the ExternalID provided under
IAM Configuration Stepsand paste it in the ExternalID field in the AWS console. This ID is unique to your account. In addition, confirm
RoleNamematches with what’s in CloudForecast. Press
Configure StackSet options - Add Tags and update
Permissionsconfirmation if needed, then click
Set deployment options - Confirm that
Deploy to Organizationis selected and select the region of your choice.
Review - Review your settings and confirm sure
RoleNamematches with the
RoleNamein the CloudForecast app. Check off
I acknowledge that AWS CloudFormation might create IAM resources with custom namesand press submit.
Wait a few minutes until
Create_Completeis shown. Since this is being deployed across all your sub-accounts, it can take a few minutes for this to be completed. You can also press the refresh button to update status.
Navigate back to CloudForecast and look under the status column to ensure confirmation of setup with thw row.