10110010011101001011001101101110101018200.devFrom Enterprise.Systems
AWS IAM logo

AWS IAM

서비스 중ID 및 액세스

AWS IAM 커넥터 — 읽기 전용, 에이전트리스

Scans AWS IAM users, roles, groups, and policies to map effective permissions and find over-privileged or stale principals.

스캔 대상

  • IAM users, roles, groups, and attached/inline policies (never resource data)
  • Effective permission relationships for blast-radius analysis

읽기 전용 모니터링 — 자동 교정을 활성화하고 쓰기 액세스를 별도로 허용하지 않는 한 AWS IAM 데이터는 변경되지 않습니다.

보안 탐지 항목

13개의 탐지 규칙이 모든 AWS IAM 스캔 시 실행됩니다. 각 탐지 항목에는 쉬운 언어로 된 설명, 이를 뒷받침하는 증거, 그리고 조치 단계가 함께 제공됩니다.

  • CRITICALMisconfig

    AWS account root user has MFA disabled

  • CRITICALMisconfig

    AWS account root user has active access keys

  • CRITICALPublic exposure

    IAM role trust policy allows any principal to assume it

  • HIGHMisconfig

    IAM console user has no MFA device

  • HIGHOver permission

    IAM user holds a wildcard (Action:* Resource:*) policy

  • HIGHOver permission

    IAM user has AdministratorAccess attached

  • MEDIUMStale access

    IAM access key has not been rotated in over 90 days

  • MEDIUMMisconfig

    Account password policy allows short passwords

  • LOWStale access

    IAM console user has been inactive for over 90 days

  • LOWMisconfig

    Account password policy does not expire passwords

  • LOWMisconfig

    Account password policy allows password reuse

  • LOWMisconfig

    IAM user has an inline policy

  • LOWMisconfig

    IAM group has no members

AWS IAM 연결 방법

  1. 1단계

    8200.dev에 가입하거나 로그인하십시오

  2. 2단계

    커넥터 → AWS IAM(으)로 이동하십시오

  3. 3단계

    연결을 클릭하고 AWS IAM의 동의 화면을 통해 인증하십시오

  4. 4단계

    8200.dev가 자동으로 스캔합니다 — 결과는 몇 분 내에 표시됩니다

몇 분 안에 첫 번째 소스를 연결하십시오 — 무료, 읽기 전용, 영업 상담 불필요.