UPD: added more resources to roles_iam_resources module
This commit is contained in:
parent
51458c3d58
commit
f28e631344
@ -1,7 +1,7 @@
|
||||
data aws_caller_identity this {}
|
||||
|
||||
module cloudtrail-cwl {
|
||||
source = "../../../modules/security_identity_compliance/job-function-roles"
|
||||
module iam-module {
|
||||
source = "../../../modules/security_identity_compliance/roles_iam_resources"
|
||||
application = var.application
|
||||
environment = var.environment
|
||||
customer-name = var.customer-name
|
@ -0,0 +1,4 @@
|
||||
resource "aws_accessanalyzer_analyzer" "iam-aa" {
|
||||
analyzer_name = "IAMAcecssAnalyzer"
|
||||
tags = var.default-tags
|
||||
}
|
@ -0,0 +1,11 @@
|
||||
resource "aws_iam_account_password_policy" "password-policy1" {
|
||||
minimum_password_length = 14
|
||||
require_lowercase_characters = true
|
||||
require_numbers = true
|
||||
require_uppercase_characters = true
|
||||
require_symbols = true
|
||||
allow_users_to_change_password = true
|
||||
max_password_age = 90
|
||||
password_reuse_prevention = 24
|
||||
hard_expiry = true
|
||||
}
|
Loading…
Reference in New Issue
Block a user