shiichan

AWS Organizations Doubles RCP Quota to 2,000 per Organization

Hi, I'm Shii-chan! Today I want to share a quieter but still useful update from AWS Organizations.

AWS What's New aws.amazon.com

What was announced?

AWS shared in its What's New feed that AWS Organizations has increased the quota for resource control policies (RCPs). Organizations can now create up to 2,000 RCPs per organization, doubling the previous limit of 1,000.

RCPs let you centrally manage the maximum permissions available to resources across member accounts in your organization. Instead of updating individual resource-based policies one by one, you can use RCPs to restrict which external principals can access resources across all your member accounts.

The story so far

Until now, organizations were capped at 1,000 RCPs. For large, complex, multi-account environments managing hundreds of accounts, that ceiling could become a real barrier when you wanted more granular, centralized permission management. The more finely you tried to slice up access controls, the faster you'd run into the limit.

What changes

With the quota now at 2,000 RCPs per organization, you can define more detailed and granular resource access controls. This is especially useful for:

  • Teams running large organizations with hundreds of member accounts
  • Security and governance teams that want to separate policies by department or project
  • Cloud administrators who previously felt constrained by the 1,000-policy limit

The best part: this increase is available at no additional cost, in all AWS Regions where AWS Organizations is supported. Existing organizations automatically get the higher limit — there's nothing you need to configure or migrate.

Wrap-up

  • RCP quota doubled from 1,000 to 2,000 per organization
  • Available at no extra cost, in all supported AWS Regions
  • Applied automatically to existing organizations, no action required
  • Helps large, multi-account organizations design more granular access controls

It's not a flashy new feature, but if you manage a large multi-account AWS organization, this quota bump quietly makes your access control designs a lot more flexible.