Skip to main content

💼 1.16 Ensure IAM policies are attached only to groups or roles

  • ID: /frameworks/cis-aws-v1.2.0/01/16

Description

By default, IAM users, groups, and roles have no access to AWS resources. IAM policies are the means by which privileges are granted to users, groups, or roles. It is recommended that IAM policies be applied directly to groups and roles but not users.

Similar

  • Sections
    • /frameworks/cis-aws-v1.3.0/01/15
  • Internal
    • ID: dec-c-349d9315

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS AWS v1.3.0 → 💼 1.15 Ensure IAM Users Receive Permissions Only Through Groups11no data

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS AWS v1.3.0 → 💼 1.15 Ensure IAM Users Receive Permissions Only Through Groups11no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (1)

PolicyLogic CountFlagsCompliance
🛡️ AWS IAM User has inline or directly attached policies🟢1🟠 x1, 🟢 x5no data

Internal Rules

RulePoliciesFlags
✉️ dec-x-4157c58a1