Ensure IAM Passwords have a minimum password length of at least 14 characters

IAM allows for creating users directly with in the AWS console for end users to be allowed to interact with the various services that AWS offers. Password complexity should be enforced and this reason is why password length is important. For this reason it is considered a security best practice not keep using the same password. Ensuring that it is restricted will help you with CIS and NIST Compliance.

Audit & Remediation

  • Login into your AWS account
  • Navigate to the IAM service at: https://console.aws.amazon.com/iam
  • on the left panel, select Account settings then select the Set password policy button.

 

 

  • Under Set password policy select the Enforce minimum password length and set the box to 14 characters.

 

 

  • Repeat the outlined steps for each AWS account that you have.
See all of your AWS EC2 Instances in a single place!

Do you want to see all of your AWS EC2 Instances in once place for all regions and all accounts?
Login to our online demo to see exactly what this looks like.
demo.intelligentdiscovery.io

 

Other Key Features

Inventory

Consolidate your inventory management with consistent and frequent security logs, inventories, and change logs. Dashboard reporting for extensive analytical value.

learn more +

Cost & Usage

Access consolidated capacity, cost, and volume tools in a scaling environment without impacting production or breaking the bank.

learn more +