Skip to content
This repository was archived by the owner on Oct 4, 2024. It is now read-only.

Release 1.0.10

Compare
Choose a tag to compare
@pethers pethers released this 17 Nov 11:59
· 1150 commits to master since this release

Changes

#New rules
F51 If the IAM user LoginProile property exists, then its Password value
should not show password in plain text, resolve an unsecure ssm string,
or have a default value for parameter.
F52 Amazon MQ Broker resource Users property should exist and its
Password property value should not show password in plain text, resolve
an unsecure ssm string, or have a default value for parameter.
F54 OpsWorks Stack RDS DBInstance Password property should not show
password in plain text, resolve an unsecure ssm string, or have a
default value for parameter.

W45 ApiGateway should have access logging configured
W50 IAM User Login Profile should exist and have PasswordResetRequired
property set to true
W51 S3 bucket should likely have a bucket policy