Control: AWS > NIST 800-53 > IAM > Ensure IAM policy should not grant full access to service
Checks if AWS Identity and Access Management (IAM) policies grant permissions to all actions on individual AWS resources. The rule is non complaint if the managed IAM policy allows full access to at least 1 AWS service.
Resource Types
This control targets the following resource types:
Category
In Your Workspace
Developers
- tmod:@turbot/aws-nist-800-53#/control/types/iamPolicyCustomNoServiceWildcard
- tmod:@turbot/turbot#/control/categories/complianceNist80053
- turbot graphql controls --filter "controlTypeId:tmod:@turbot/aws-nist-800-53#/control/types/iamPolicyCustomNoServiceWildcard"
Get Controls
Control Type URI
Category URI
GraphQL
CLI