AWS IAM
已上线身份与访问AWS IAM 连接器——只读、无代理
Scans AWS IAM users, roles, groups, and policies to map effective permissions and find over-privileged or stale principals.
我们扫描的内容
- IAM users, roles, groups, and attached/inline policies (never resource data)
- Effective permission relationships for blast-radius analysis
只读监控——除非您开启自动修复并单独授予写入权限,否则您的 AWS IAM 数据中的任何内容都不会发生变更。
安全发现
每次 AWS IAM 扫描会运行 13 条检测规则。每条发现都附带通俗易懂的说明、支撑证据以及修复步骤。
- CRITICALMisconfig
AWS account root user has MFA disabled
- CRITICALMisconfig
AWS account root user has active access keys
- CRITICALPublic exposure
IAM role trust policy allows any principal to assume it
- HIGHMisconfig
IAM console user has no MFA device
- HIGHOver permission
IAM user holds a wildcard (Action:* Resource:*) policy
- HIGHOver permission
IAM user has AdministratorAccess attached
- MEDIUMStale access
IAM access key has not been rotated in over 90 days
- MEDIUMMisconfig
Account password policy allows short passwords
- LOWStale access
IAM console user has been inactive for over 90 days
- LOWMisconfig
Account password policy does not expire passwords
- LOWMisconfig
Account password policy allows password reuse
- LOWMisconfig
IAM user has an inline policy
- LOWMisconfig
IAM group has no members
如何连接 AWS IAM
第 1 步
注册或登录 8200.dev
第 2 步
前往 连接器 → AWS IAM
第 3 步
点击 连接 并通过 AWS IAM 的授权页面进行授权
第 4 步
8200.dev 自动扫描——数分钟内即可看到结果
几分钟内接入您的第一个数据源——免费、只读,无需销售沟通。