Control: RDS database clusters should use a custom administrator username
Description
This control checks whether an AWS RDS database cluster has changed the admin username from its default value. This rule will fail if the admin username is set to the default value.
Usage
Run the control in your terminal:
powerpipe control run aws_compliance.control.rds_db_cluster_no_default_admin_name
Snapshot and share results via Turbot Pipes:
powerpipe loginpowerpipe control run aws_compliance.control.rds_db_cluster_no_default_admin_name --share
SQL
This control uses a named query:
select arn as resource, case when master_user_name in ('admin', 'postgres') then 'alarm' else 'ok' end status, case when master_user_name in ('admin', 'postgres') then title || ' using default master user name.' else title || ' not using default master user name.' end reason , region, account_idfrom aws_rds_db_cluster;