IAM Password Without Lowercase Letter

  • Query id: de92dd34-1b88-43e8-b825-6e02d73c4549
  • Query name: IAM Password Without Lowercase Letter
  • Platform: Pulumi
  • Severity: Medium
  • Category: Best Practices
  • URL: Github

Description

IAM Password should have at least one lowercase letter
Documentation

Code samples

Code samples with security vulnerabilities

Positive test num. 1 - yaml file
name: aws-eks
runtime: yaml
description: An EKS cluster
resources:
  example:
    type: aws:iam:AccountPasswordPolicy
    properties:
---
name: aws-eks
runtime: yaml
description: An EKS cluster
resources:
  example:
    type: aws:iam:AccountPasswordPolicy
    properties:
      requireLowercaseCharacters: false

Code samples without security vulnerabilities

Negative test num. 1 - yaml file
name: aws-eks
runtime: yaml
description: An EKS cluster
resources:
  example:
    type: aws:iam:AccountPasswordPolicy
    properties:
      requireLowercaseCharacters: true