Skip to main content

RAM User Active AK Quantity Check

ID: rule:aliyun:ram-user-activated-ak-quantity-check
Severity: medium
IaC Types: ROS, Terraform

Description

Ensures RAM users do not have more than one active AccessKey.

Reason for Violation

Limiting active AccessKeys reduces the potential impact of a credential leak.

Recommendation

Deactivate or remove unnecessary AccessKeys.

Resource Types

  • ROS: ALIYUN::RAM::User
  • Terraform: alicloud_ram_access_key