Skip to main content

💼 1.21 Do not setup access keys during initial user setup for all IAM users that have a console password

  • Contextual name: 💼 1.21 Do not setup access keys during initial user setup for all IAM users that have a console password
  • ID: /frameworks/cis-aws-v1.2.0/01/21
  • Located in: 💼 1 Identity and Access Management

Description

AWS console defaults the checkbox for creating access keys to enabled. This results in many access keys being generated unnecessarily. In addition to unnecessary credentials, it also generates unnecessary management work in auditing and rotating these keys.

Similar

  • Sections
    • /frameworks/cis-aws-v1.3.0/01/11
  • Internal
    • ID: dec-c-6b978788

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlags
💼 CIS AWS v1.3.0 → 💼 1.11 Do not setup access keys during initial user setup for all IAM users that have a console password11

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlags
💼 CIS AWS v1.3.0 → 💼 1.11 Do not setup access keys during initial user setup for all IAM users that have a console password11

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlags

Policies (1)

PolicyLogic CountFlags
📝 AWS IAM User with console and programmatic access set during the initial creation 🟢🟢 x3

Internal Rules

RulePoliciesFlags
✉️ dec-x-b10e98af1