turbot/aws_compliance

Control: KMS CMK policies should prohibit public access

Description

Manage access to resources in the AWS Cloud by ensuring AWS KMS CMK cannot be publicly accessed.

Usage

Run the control in your terminal:

powerpipe control run aws_compliance.control.kms_cmk_policy_prohibit_public_access

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run aws_compliance.control.kms_cmk_policy_prohibit_public_access --share

SQL

This control uses a named query:

kms_cmk_policy_prohibit_public_access

Tags