View a markdown version of this page

Update an approval team - Multi-party approval

Update an approval team

When you sign in to your organization's management account, you can request to update your approval teams by navigating to the Multi-party approval console.

As the Multi-party approval administrator, you can request to update the team description, approval threshold, and approvers assigned to a team. This creates an approval session for the request.

Update an approval team

To update a team, complete the following steps.

Minimum permissions

To update a team, you need permission to run the following actions:

  • mpa:UpdateApprovalTeam

If you are using the AWS Management Console, you also need permission to run the following actions:

  • kms:Decrypt

  • organizations:DescribeOrganization

  • organizations:ListDelegatedAdministrators

  • sso:DescribeInstance

  • sso:GetSharedSsoConfiguration

  • sso:ListInstances

  • sso-directory:DescribeUsers

  • sso-directory:SearchUsers

AWS Management Console
To update a team
  1. Open the Organizations console at https://console.aws.amazon.com/organizations/.

  2. On the left navigation, choose Multi-party approval.

  3. On the Team column, select a team to view its details.

  4. On the team page, choose Edit.

  5. On the Edit approval team page, you can update the following information:

    • Description: Description for the team.

    • Approvers: Choose Assign approvers to open a dialog box for selecting IAM Identity Center users to add or remove from the team. Teams must have at least three approvers

    • Minimum required approvals: Minimum number of approvals needed for a protected operation to run. It is recommended to set an approval threshold below the total number of approvers. The approval threshold must be at least two.

  6. After you have finished updating your information, choose Edit.

AWS CLI & AWS SDKs
To update a team

You can use one of the following operations: