IAM: GetAccountSummary - 'AccessKeysPerUserQuota < 2'

Information

Access keys are used to digitally sign API calls made to AWS services. Each access key credential is comprised of an access key ID and a secret key. The secret key portion must be secured by the AWS account holder or the IAM user to whom they are assigned.

Solution

Set the maximum number of keys to an appropriate value. By default this value is set to 2.

See Also

https://d1.awsstatic.com/whitepapers/Security/AWS_Security_Best_Practices.pdf

Item Details

Category: ACCESS CONTROL, IDENTIFICATION AND AUTHENTICATION, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|AC-18, 800-53|IA-3, 800-53|IA-7, 800-53|SC-7, 800-53|SC-8, 800-53|SC-9, 800-53|SC-12, 800-53|SC-13, 800-53|SC-16, 800-53|SC-17, 800-53|SC-23, 800-53|SC-28, 800-53|SI-8

Plugin: amazon_aws

Control ID: 1a4772d1f01b4d965c715318b42ea3b1dbd2b666d951131e6ef0d367712badc8