Skip to main content

RAM User AccessKey Last Used Date Check

ID: rule:aliyun:ram-user-ak-used-expired-check
Severity: medium
IaC Types: ROS, Terraform

Description

Ensures that RAM user AccessKeys are in Active status.

Reason for Violation

Unused AccessKeys should be deactivated or deleted to reduce the attack surface.

Recommendation

Ensure the AccessKey status is set to Active, or remove unused AccessKeys.

Resource Types

  • ROS: ALIYUN::RAM::AccessKey
  • Terraform: alicloud_ram_access_key