mirror of
https://github.com/prowler-cloud/prowler.git
synced 2026-10-04 02:04:06 +00:00
fix(compliance): correct AWS FSBP check mapping for IAM.9 and EKS.1 (#12372)
Co-authored-by: pedrooot <pedromarting3@gmail.com>
This commit is contained in:
co-authored by
pedrooot
parent
829af2e3f7
commit
465e35bf54
@@ -0,0 +1 @@
|
||||
AWS FSBP compliance mapping for `IAM.9` and `EKS.1` referenced missing/renamed checks; both now point to their real, existing check IDs
|
||||
@@ -1782,7 +1782,7 @@
|
||||
"Name": "EKS cluster endpoints should not be publicly accessible",
|
||||
"Description": "This control checks whether an Amazon EKS cluster endpoint is publicly accessible. The control fails if an EKS cluster has an endpoint that is publicly accessible.",
|
||||
"Checks": [
|
||||
"eks_endpoints_not_publicly_accessible"
|
||||
"eks_cluster_not_publicly_accessible"
|
||||
],
|
||||
"Attributes": [
|
||||
{
|
||||
@@ -2634,7 +2634,9 @@
|
||||
"Id": "IAM.9",
|
||||
"Name": "MFA should be enabled for the root user",
|
||||
"Description": "The root user has complete access to all the services and resources in an AWS account. MFA adds an extra layer of protection on top of a user name and password. With MFA enabled, when a user signs in to the AWS Management Console, they're prompted for their user name and password and for an authentication code from their AWS MFA device.",
|
||||
"Checks": [],
|
||||
"Checks": [
|
||||
"iam_root_mfa_enabled"
|
||||
],
|
||||
"Attributes": [
|
||||
{
|
||||
"ItemId": "IAM.9",
|
||||
|
||||
Reference in New Issue
Block a user