Loading controls...
Benchmark: IAM
Description
This benchmark provides a set of controls that detect Terraform AWS IAM resources deviating from security best practices.
Usage
Browse dashboards and select IAM:
steampipe dashboard
Or run the benchmarks in your terminal:
steampipe check terraform_aws_compliance.benchmark.iam
Snapshot and share results via Steampipe Cloud:
steampipe loginsteampipe check --share terraform_aws_compliance.benchmark.iam
Controls
- Ensure IAM password policy requires minimum length of 14 or greate
- Ensure IAM password policy requires at least one lowercase letter
- Ensure IAM password policy requires at least one number
- Ensure IAM password policy requires at least one symbol
- Ensure IAM password policy requires at least one uppercase letter
- Ensure IAM password policy prevents password reuse
- Ensure IAM password policy requires a minimum length of 8 or greater
- Password policies for IAM users should have strong configurations
- Ensure IAM password policy expires passwords within 90 days or less