Citation Mapping
Project 24131 –
Task 950332
Instructions: Map a Citation from the Authority Document. | Task Description: Map the "1.5" Citation | Authority Document URL: Website URI Document URI |
Citation Reference: 1.5
Citation Guidance:
Ensure MFA is enabled for the 'root' user account (Automated)
Description:
The 'root' user account is the most privileged user in an AWS account. Multi-factor Authentication (MFA) adds an extra layer of protection on top of a username and password. With MFA enabled, when a user signs in to an AWS website, they will be prompted for their username and password as well as for an authentication code from their AWS MFA device.
Note: When virtual MFA is used for 'root' accounts, it is recommended that the device used is NOT a personal device, but rather a dedicated mobile device (tablet or phone) that is managed to be kept charged and secured independent of any individual personal devices. ("non-personal virtual MFA") This lessens the risks of losing access to the MFA due to device loss, device trade-in or if the individual owning the device is no longer employed at the company.
Rationale:
Enabling MFA provides increased security for console access as it requires the authenticating principal to possess a device that emits a time-sensitive key and have knowledge of a credential.
Audit:
Perform the following to determine if the 'root' user account has MFA setup:
From Console:
1. Login to the AWS Management Console
2. Click Services
3. Click IAM
4. Click on Credential Report
5. This will download a .csv file which contains credential usage for all IAM users within an AWS Account - open this file
6. For the |
Why are you sending the task back? (optional)