sam/cross-account-role/template.yaml
Verify the cross-account role is deployed and has the right permissions.
Deploy this CloudFormation template to any AWS account you want to monitor. The monitoring account ID and role name are pre-filled.
Then deploy with:
aws cloudformation deploy \ --template-file domain-monitor-role.yaml \ --stack-name domain-monitor-role \ --capabilities CAPABILITY_NAMED_IAM