Skip to main content

💼 1.21 Do not setup access keys during initial user setup for all IAM users that have a console password

  • ID: /frameworks/cis-aws-v1.2.0/01/21

Description

AWS console defaults the checkbox for creating access keys to enabled. This results in many access keys being generated unnecessarily. In addition to unnecessary credentials, it also generates unnecessary management work in auditing and rotating these keys.

Similar

  • Sections
    • /frameworks/cis-aws-v1.3.0/01/11
  • Internal
    • ID: dec-c-6b978788

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS AWS v1.3.0 → 💼 1.11 Do not setup access keys during initial user setup for all IAM users that have a console password11no data

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS AWS v1.3.0 → 💼 1.11 Do not setup access keys during initial user setup for all IAM users that have a console password11no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (1)

PolicyLogic CountFlagsCompliance
🛡️ AWS IAM User with console and programmatic access set during the initial creation🟢⚪🟢 x2, ⚪ x1no data

Internal Rules

RulePoliciesFlags
✉️ dec-x-b10e98af1