AWS Resource Access Manager

Simply and securely share your AWS resources across multiple accounts

Simplify your security and access controls across shared resources.

Streamline management of AWS resources within your organization from a central account.

Reduce overhead and costs by creating resources once and sharing them across multiple accounts.

How it works

AWS RAM helps you securely share your resources across AWS accounts, within your organization or organizational units (OUs), and with IAM roles and users for supported resource types.

Diagram showing how AWS RAM makes resources shareable based on specified access permissions.

Use cases

Share resources in multi-account environments

Share foundational infrastructure like Amazon VPC subnets across accounts, allowing multiple accounts to deploy application resources to the same subnet

Learn more about VPC sharing best practices »

Centrally govern access to resources

Centrally manage resources like private certificate authorities allowing certificate issuance across multiple accounts to manage cost and reduce operational overhead

Learn more about creating centralized CA Hierarchy »

Least privilege on shared resources

Use managed permissions to grant only the permissions required to perform tasks on resources shared using AWS RAM

Learn more about AWS RAM managed permissions »

How to get started

Get started with resource sharing

Take advantage of shared resources within your organization.

Dive deeper into AWS RAM

Watch a short demo on resource sharing with AWS RAM.

Grant least privilege access to your shared resources

Use managed permissions to grant only the permissions required to perform tasks on resources shared using AWS RAM.


Explore more of AWS