Skip to main content

list-billing-transfer-program-management-accounts

dci list-billing-transfer-program-management-accounts [flags]

Lists the caller's program management accounts (PMAs) and the reseller tenants mapped to each one, including AWS Organizations handshake status per account. Distributor-only.

Flags

--max-results: (integer format:int64 default:50)

--page-token: (string)

Output

OK

By default dci renders the result as a table. Use --output json to get the full structure described below — see Output formats.

FieldTypeDescription
itemsarray of object
items[].dpmaIdstring
items[].accountIdstring12-digit AWS account ID of the program management account.
items[].roleArnstring
items[].stackNamestring
items[].regionstring
items[].iamStatusstring
items[].iamDiffobjectPresent when iamStatus indicates drift. null when the deployed IAM matches expectations.
items[].iamDiff.missingarray of string
items[].iamDiff.extraarray of string
items[].createdAtstring (date-time)
items[].lastRefreshTimestring (date-time)When this account's handshake/tenant state was last refreshed. null if never refreshed.
items[].tenantsarray of object
items[].tenants[].customerIdstring
items[].tenants[].tenantTypestring
items[].tenants[].parentTenantstring
items[].tenants[].displayNamestring
items[].tenants[].resellerPmaAccountIdstring
items[].tenants[].handshakeStatestringAWS Organizations Handshake State value, lowercased. One of: "requested", "open", "canceled", "accepted", "declined", "expired".
items[].tenants[].statusstring
items[].tenants[].effectiveTimestring (date-time)When the handshake reached a terminal state. null until then.
items[].handshakeStatusobjectPer-AWS-Organizations-handshake-state counts across all tenants mapped to a PMA.
items[].handshakeStatus.totalinteger
items[].handshakeStatus.requestedinteger
items[].handshakeStatus.openinteger
items[].handshakeStatus.acceptedinteger
items[].handshakeStatus.declinedinteger
items[].handshakeStatus.canceledinteger
items[].handshakeStatus.expiredinteger
pageTokenstringOpaque cursor for the next page. Absent when this is the last page.
rowCountinteger
Raw JSON schema
{
"type": "object",
"additionalProperties": false,
"required": [
"items",
"rowCount"
],
"properties": {
"items": {
"type": "array",
"items": {
"type": "object",
"additionalProperties": false,
"required": [
"dpmaId",
"accountId",
"roleArn",
"stackName",
"region",
"iamStatus",
"createdAt",
"tenants",
"handshakeStatus"
],
"properties": {
"dpmaId": {
"type": "string"
},
"accountId": {
"type": "string",
"description": "12-digit AWS account ID of the program management account.",
"example": "123456789012"
},
"roleArn": {
"type": "string"
},
"stackName": {
"type": "string"
},
"region": {
"type": "string"
},
"iamStatus": {
"type": "string"
},
"iamDiff": {
"allOf": [
{
"type": "object",
"additionalProperties": false,
"properties": {
"missing": {
"type": "array",
"items": {
"type": "string"
}
},
"extra": {
"type": "array",
"items": {
"type": "string"
}
}
}
}
],
"nullable": true,
"description": "Present when `iamStatus` indicates drift. `null` when the deployed IAM matches expectations."
},
"createdAt": {
"type": "string",
"format": "date-time"
},
"lastRefreshTime": {
"type": "string",
"format": "date-time",
"nullable": true,
"description": "When this account's handshake/tenant state was last refreshed. `null` if never refreshed."
},
"tenants": {
"type": "array",
"items": {
"type": "object",
"additionalProperties": false,
"required": [
"customerId",
"tenantType",
"parentTenant",
"displayName",
"resellerPmaAccountId",
"handshakeState",
"status"
],
"properties": {
"customerId": {
"type": "string"
},
"tenantType": {
"type": "string"
},
"parentTenant": {
"type": "string"
},
"displayName": {
"type": "string"
},
"resellerPmaAccountId": {
"type": "string",
"example": "123456789012"
},
"handshakeState": {
"type": "string",
"description": "AWS Organizations Handshake `State` value, lowercased.",
"enum": [
"requested",
"open",
"canceled",
"accepted",
"declined",
"expired"
]
},
"status": {
"type": "string"
},
"effectiveTime": {
"type": "string",
"format": "date-time",
"nullable": true,
"description": "When the handshake reached a terminal state. `null` until then."
}
}
}
},
"handshakeStatus": {
"type": "object",
"description": "Per-AWS-Organizations-handshake-state counts across all tenants mapped to a PMA.",
"additionalProperties": false,
"required": [
"total",
"requested",
"open",
"accepted",
"declined",
"canceled",
"expired"
],
"properties": {
"total": {
"type": "integer"
},
"requested": {
"type": "integer"
},
"open": {
"type": "integer"
},
"accepted": {
"type": "integer"
},
"declined": {
"type": "integer"
},
"canceled": {
"type": "integer"
},
"expired": {
"type": "integer"
}
}
}
}
}
},
"pageToken": {
"type": "string",
"description": "Opaque cursor for the next page. Absent when this is the last page."
},
"rowCount": {
"type": "integer"
}
}
}

Errors

On failure, dci prints a single error message — with a hint when one is available — and exits with a typed code your scripts can branch on. See Errors and exit codes for the full contract.

HTTP statusExit codeError codeMeaning
40030VALIDATION_ERRORThe arguments or request body were rejected. Review the command's flags and payload.
40110AUTHENTICATION_FAILEDNot signed in, or the API token is invalid. Run dci login or check DCI_API_KEY.
40311PERMISSION_DENIEDThe DoiT user or the active customer context does not have access.
50040API_SERVER_ERRORThe API failed to process the request. Retryable; contact DoiT support if it persists.

Aliases: listbillingtransferprogrammanagementaccounts