Skip to content

Files

Latest commit

 

History

History
31 lines (22 loc) · 595 Bytes

aws-iam-require-numbers-in-passwords.md

File metadata and controls

31 lines (22 loc) · 595 Bytes

Pattern: Allowed non-number passwords for AWS IAM policy

Issue: -

Description

IAM account password policies should ensure that passwords content including at least one number.

Resolution: Enforce longer, more complex passwords in the policy.

Examples

Example of incorrect code:

resource "aws_iam_account_password_policy" "bad_example" {
	# ...
	# require_numbers not set
	# ...
}

Example of correct code:

resource "aws_iam_account_password_policy" "good_example" {
	# ...
	require_numbers = true
	# ...
}