turbot/aws_compliance

Control: KMS key should be in use

Description

This control checks whether there are any unused CMK (Customer Master Key) KMS (Key Management Service) keys.

Usage

Run the control in your terminal:

powerpipe control run aws_compliance.control.kms_cmk_unused

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run aws_compliance.control.kms_cmk_unused --share

SQL

This control uses a named query:

kms_cmk_unused

Tags