💼 1.12 Ensure API keys are not created for tenancy administrator users - Level 1 (Automated)
- ID:
/frameworks/cis-oracle-v3.1.0/01/12
Stats
not available
Description
Tenancy administrator users have full access to the organization's OCI tenancy. API keys associated with user accounts are used for invoking the OCI APIs via custom programs or clients like CLI/SDKs. The clients are typically used for performing day-to- day operations and should never require full tenancy access. Service-level administrative users with API keys should be used instead.
Similar
- Internal
- ID:
dec-c-753e3343
- ID:
Sub Sections
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|
Policies (1)
| Policy | Logic Count | Flags | Compliance |
|---|---|---|---|
| 🛡️ Oracle IAM Administrator User has an active API key🟢 | 1 | 🟢 x6 | no data |