How to validate the Trusted Advisor MFA on Root Account List?

0

Hi Team, One of my customer has 90 sub-accounts which are not root accounts but is being highlighted in the Trusted Advisor MFA on Root not enabled report. How do we verify or validate these sub-accounts which don't really need an MFA and they are all tied up to a single payerid which has MFA enabled.

AWS
질문됨 6달 전277회 조회
1개 답변
0

Every AWS account has a root user. This will be why it’s being reported. True when you create an account in an org there is no password but an email address is required. The way to log into the account is to perform a password recovery.

Usual to satisfy the AWS control each account would require an MFA device adding to root.

Aws CONFIG and backed with security hub will also provide the same insight if configured across the org.

profile picture
전문가
답변함 6달 전

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.

질문 답변하기에 대한 가이드라인