Prerequisites
- An active MilkStraw AI account
- AWS account with permissions to create IAM roles and policies on Payer account
- Access to the AWS Management Console
Connecting a single AWS account
Initiate connection
In the Milkstraw AI dashboard, start the connection process. Enter your company name and AWS Payer Account ID.
Deploy CloudFormation
We’ll generate a CloudFormation template for you. Launch it in your AWS Console to deploy a read-only cross-account IAM role with a unique external ID.
Execute CloudFormation stack
In the AWS CloudFormation console, acknowledge the required capabilities, and execute the stack. This action creates a secure cross-account IAM role in your account with a unique external ID and the necessary read-only permissions for monitoring.
Connecting an AWS organization
If you are using AWS Organizations with multiple linked accounts, you will need to onboard your entire organization after connecting your Payer Account.Launch organization StackSet
When prompted, deploy the StackSet wrapper template in AWS CloudFormation.
Deploy AWS CloudFormation
The pre-filled StackSet wrapper template be automatically deployed to every child account in your organization
- MilkStraw AI securely monitors your usage using read-only permissions.
- We analyze your usage patterns and identify opportunities.