Skip to main content

💼 1.21 Ensure IAM users are managed centrally via identity federation or AWS Organizations for multi-account environments (Manual)

  • ID: /frameworks/cis-aws-v4.0.0/01/21

Description

In multi-account environments, IAM user centralization facilitates greater user control. User access beyond the initial account is then provided via role assumption. Centralization of users can be accomplished through federation with an external identity provider or through the use of AWS Organizations.

Similar

  • Sections
    • /frameworks/cis-aws-v4.0.1/01/21
    • /frameworks/cis-aws-v3.0.0/01/21

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS AWS v3.0.0 → 💼 1.21 Ensure IAM users are managed centrally via identity federation or AWS Organizations for multi-account environments - Level 2 (Manual)1no data
💼 CIS AWS v4.0.1 → 💼 1.21 Ensure IAM users are managed centrally via identity federation or AWS Organizations for multi-account environments (Manual)1no data

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS AWS v3.0.0 → 💼 1.21 Ensure IAM users are managed centrally via identity federation or AWS Organizations for multi-account environments - Level 2 (Manual)1no data
💼 CIS AWS v4.0.1 → 💼 1.21 Ensure IAM users are managed centrally via identity federation or AWS Organizations for multi-account environments (Manual)1no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (1)

PolicyLogic CountFlagsCompliance
🛡️ AWS IAM User is not managed centrally in multi-account environments🟢⚪🟢 x2, ⚪ x1no data