An organization wants to enforce that all new AWS resources are tagged with a 'CostCenter' tag before they can be created. Which mechanism achieves this preventatively?
-
A
AWS Config tag compliance rule
-
B
Service Control Policy (SCP) with a tag condition
-
C
AWS Cost Explorer tag enforcement
-
D
CloudWatch Events tag alarm