Skip to main content

Root User MFA Check

ID: rule:aliyun:root-mfa-check
Severity: high

Description

Ensures that Multi-Factor Authentication (MFA) is enabled for the root account.

Reason for Violation

MFA provides an extra layer of security for the most privileged account in the cloud environment.

Recommendation

Enable MFA for the Alibaba Cloud root account.

Resource Types

  • ALIYUN::RAM::User