Skip to main content

RAM Policy In Use Check

ID: rule:aliyun:ram-policy-in-use-check
Severity: low
IaC Types: ROS, Terraform

Description

Ensures RAM policies are attached to at least one RAM user, group, or role.

Reason for Violation

Idle policies increase management complexity and should be removed.

Recommendation

Add an alicloud_ram_role_policy_attachment, alicloud_ram_user_policy_attachment, or alicloud_ram_group_policy_attachment resource, or remove the unused policy.

Resource Types

  • ROS: ALIYUN::RAM::ManagedPolicy
  • Terraform: alicloud_ram_policy