From 978361fe14bd4de947bf5085c297e5fd0c98bcac Mon Sep 17 00:00:00 2001 From: badra001 Date: Thu, 8 Jan 2026 09:48:32 -0500 Subject: [PATCH 1/2] add scp --- aws/whats-new/architecture/README.md | 7 +++++++ 1 file changed, 7 insertions(+) diff --git a/aws/whats-new/architecture/README.md b/aws/whats-new/architecture/README.md index 88cf201c..b4a8414a 100644 --- a/aws/whats-new/architecture/README.md +++ b/aws/whats-new/architecture/README.md @@ -1,5 +1,12 @@ # What's New with our AWS Architecture +## 2026-01-07: SCP to restrict access to permitted Bedrock models only + +We have implemented a service control policy in lab-gov and ent-ew to restrict access to only the permitted Bedrock models. +More details on the models and this change [here](https://github.e.it.census.gov/terraform/cloud-information/blob/master/aws/documentation/services/bedrock/scp.md), +and Bedrock [here](https://github.e.it.census.gov/terraform/cloud-information/blob/master/aws/documentation/services/bedrock/). It is expected +this change to be applied to ent-gov shortly afterwards. + ## 2026-01-02: Stop all non-organization CloudTrail We have taken action and stopped all CloudTrail logging other than the `inf-org-cloudtrail` trail, which is already capturing all events. From 4f51711944e3a0915120e4fa255254df34d548c6 Mon Sep 17 00:00:00 2001 From: Anupama Dwaram Date: Thu, 8 Jan 2026 11:00:24 -0600 Subject: [PATCH 2/2] adding new account entries- new accounts (#391) * adding new account entries * adding new account entries * adding new account entries * adding new account entries --------- Co-authored-by: dwara001 --- aws/info/ACCOUNTS.md | 14 ++++++++++++-- 1 file changed, 12 insertions(+), 2 deletions(-) diff --git a/aws/info/ACCOUNTS.md b/aws/info/ACCOUNTS.md index efbcd83a..6c28e94b 100644 --- a/aws/info/ACCOUNTS.md +++ b/aws/info/ACCOUNTS.md @@ -339,8 +339,10 @@ | 509741898906 | lab-dsd-dev-gov | Lab DSD Dev GovCloud | AWS GovCloud | | | 423535227157 | erd-prod-ew | ADEP ERD EW Prod | AWS East/West | csvd.aws+erd-prod-ew@census.gov | | 513576959327 | erd-prod-gov | ADEP ERD GovCloud Prod | AWS GovCloud | | - - +| | adsd-tools-nonprod-ew | ADSD Tools EW NonProd | AWS East/West | csvd.aws+adsd-tools-nonprod-ew@census.gov | +| | adsd-tools-nonprod-gov | ADSD Tools GovCloud NonProd | AWS GovCloud | +| | adsd-tools-prod-ew | ADSD Tools EW Prod | AWS East/West | csvd.aws+adsd-tools-prod-ew@census.gov | +| | adsd-tools-prod-gov | ADSD Tools GovCloud Prod | AWS GovCloud | | # Decomissioned AWS Accounts @@ -888,4 +890,12 @@ * CRF # 651 * Jira # CSVDIES-8583 * Adding account numbers for erd-prod-{ew,gov} +* 2026-01-08 + * CRF # 638 + * Jira # CSVDIES-8779 + * Creating account for adsd-tools-nonprod-{ew,gov} +* 2026-01-08 + * CRF # 638 + * Jira # CSVDIES-8779 + * Creating account for adsd-tools-prod-{ew,gov}