Introducing cross-account sharing to direct IAM principals and sharing with AWS Organization units using LF-TBAC in AWS Lake Formation
Cross-account sharing version 3 in AWS Lake Formation is now generally available. Version 3 includes features to improve ease of use in granting cross-account permissions using Lake Formation. You can now share AWS Glue Data Catalog resources such as, databases and tables from one account directly to another account’s IAM principals, namely, IAM roles and IAM users. Version 3 eliminates the additional manual step of writing Data Catalog resource policies while using LF-tags based cross-account sharing. Finally, you can share Data Catalog resources with an AWS Organization/Org unit using LF-tags based sharing.