Control: AppStream fleet max user duration should be set to less than 10 hours
Description
Ensure user maximum session duration is no longer than 10 hours. A session duration exceeding 10 hours is unnecessary and may offer malicious users an extended period of unauthorized usage beyond acceptable limits.
Usage
Run the control in your terminal:
powerpipe control run aws_compliance.control.appstream_fleet_max_user_duration_36000_seconds
Snapshot and share results via Turbot Pipes:
powerpipe loginpowerpipe control run aws_compliance.control.appstream_fleet_max_user_duration_36000_seconds --share
SQL
This control uses a named query:
select arn as resource, case when max_user_duration_in_seconds < 36000 then 'ok' else 'alarm' end as status, title || ' max user duration in seconds is set to ' || max_user_duration_in_seconds || ' seconds.' as reason , region, account_idfrom aws_appstream_fleet;