๐ผ 1.16 Ensure IAM policies that allow full ":" administrative privileges are not attached (Automated)
- Contextual name: ๐ผ 1.16 Ensure IAM policies that allow full ":" administrative privileges are not attached (Automated)
- ID:
/frameworks/cis-aws-v4.0.0/01/16
- Located in: ๐ผ 1 Identity and Access Management
Descriptionโ
IAM policies are the means by which privileges are granted to users, groups, or roles. It is recommended and considered standard security advice to grant least privilegeโthat is, granting only the permissions required to perform a task. Determine what users need to do, and then craft policies for them that allow the users to perform only those tasks, instead of granting full administrative privileges.
Similarโ
- Sections
/frameworks/cis-aws-v4.0.1/01/16
/frameworks/cis-aws-v3.0.0/01/16
Similar Sections (Take Policies From)โ
Similar Sections (Give Policies To)โ
Sub Sectionsโ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|
Policies (1)โ