Loading controls...
Benchmark: 2. Use multi-factor authentication (MFA)
Description
MFA is the best way to protect accounts from inappropriate access. Always set up MFA on your Root user and AWS Identity and Access Management (IAM) users.
Usage
Browse dashboards and select 2. Use multi-factor authentication (MFA):
steampipe dashboard
Or run the benchmarks in your terminal:
steampipe check aws_top_10.benchmark.account_security_use_mfa
Snapshot and share results via Steampipe Cloud:
steampipe loginsteampipe check --share aws_top_10.benchmark.account_security_use_mfa
Controls
- IAM root user MFA should be enabled
- IAM users with console access should have MFA enabled
- IAM user MFA should be enabled
- IAM administrator users should have MFA enabled
- IAM root user virtual MFA should be enabled