Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add unused iam role within 60 days control #663

Merged
merged 2 commits into from
Jun 15, 2023

Conversation

bob-bot
Copy link
Contributor

@bob-bot bob-bot commented Jun 15, 2023

Added the control and query to the conformance pack iam.sp file
Associated that control to the Other Checks benchmark.

Closes #662

Note: if the role_last_used_date is null, essentially never used, the logic of the query is consistent with other queries like iam_user_unused_credentials_45 where never used is considered an 'alarm' but handled with a specific reason that it was never used.

I have tested the query, but not the entire benchmark if the control was added correctly

@cbruno10 cbruno10 changed the base branch from main to release/v0.70 June 15, 2023 19:33
@cbruno10 cbruno10 merged commit f22add5 into release/v0.70 Jun 15, 2023
@cbruno10 cbruno10 deleted the add-unused-iam-role branch June 15, 2023 19:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Add an other check for unused IAM Roles in 60 days
2 participants