Skip to main content

πŸ’Ό 1.21 Do not setup access keys during initial user setup for all IAM users that have a console password

  • Contextual name: πŸ’Ό 1.21 Do not setup access keys during initial user setup for all IAM users that have a console password
  • ID: /frameworks/cis-aws-v1.2.0/01/21
  • Located in: πŸ’Ό 1 Identity and Access Management

Description​

AWS console defaults the checkbox for creating access keys to enabled. This results in many access keys being generated unnecessarily. In addition to unnecessary credentials, it also generates unnecessary management work in auditing and rotating these keys.

Similar​

  • Sections
    • /frameworks/cis-aws-v1.3.0/01/11
  • Internal
    • ID: dec-c-6b978788

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό CIS AWS v1.3.0 β†’ πŸ’Ό 1.11 Do not setup access keys during initial user setup for all IAM users that have a console password11

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό CIS AWS v1.3.0 β†’ πŸ’Ό 1.11 Do not setup access keys during initial user setup for all IAM users that have a console password11

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags

Policies (1)​

PolicyLogic CountFlags
πŸ“ AWS IAM User with console and programmatic access set during the initial creation 🟒🟒 x3

Internal Rules​

RulePoliciesFlags
βœ‰οΈ dec-x-b10e98af1