A Resource Access Management (RAM) user that belongs to a RAM user group is compliant.
Scenarios
Do not create RAM users outside your management structure to avoid a lack of oversight.
Risk level
Default risk level: Low.
You can change the risk level of this rule as needed.
Detection logic
A RAM user that belongs to a RAM user group is compliant.
A RAM user that does not belong to any RAM user group is non-compliant.
Rule details
Parameter | Description |
Rule name | RAM user group membership |
Rule identifier | ram-user-group-membership-check |
Tags | RAM, User |
Automatic remediation | Not supported |
Rule trigger mechanism | Periodic |
Trigger frequency | 24 hours |
Supported resource types | RAM user |
Rule input parameters |
|
Remediation
You can add a RAM user to a RAM user group. For more information, see Add a RAM user to a RAM user group.
该文章对您有帮助吗?